---
cve: "CVE-2023-53464"
severity: "LOW"
cvss: 3.1
epss: "15%"
vendor: "Linux"
kev: false
exploited: false
published: "2025-10-01 12:15:48"
tags: [cve, security, low]
source: tsecurity.de CVE-Dossier
exported: "2026-09-13T06:50:04+02:00"
---

# CVE-2023-53464

> 3.1 LOW

## Beschreibung

In the Linux kernel, the following vulnerability has been resolved:

scsi: iscsi_tcp: Check that sock is valid before iscsi_set_param()

The validity of sock should be checked before assignment to avoid incorrect
values. Commit 57569c37f0ad ("scsi: iscsi: iscsi_tcp: Fix null-ptr-deref
while calling getpeername()") introduced this change which may lead to
inconsistent values of tcp_sw_conn->sendpage and conn->datadgst_en.

Fix the issue by moving the position of the assignment.

## Patch verfügbar (OSV)

- Kernel ≥ 5.10.178
- Kernel ≥ 5.15.107
- Kernel ≥ 6.1.24
- Kernel ≥ 6.2.11

## Referenzen

- <https://git.kernel.org/stable/c/499757ad3332e2527254f9ab68dec1da087b1d96>
- <https://git.kernel.org/stable/c/5e5c5f472972c4bc9430adc08b36763a0fa5b9f7>
- <https://git.kernel.org/stable/c/6e06a68fbbfcd8576eee8f7139fa2b13c9b72e91>
- <https://git.kernel.org/stable/c/b287e21e73ec23f3788fbe40037c42dbe6e9a9a9>
- <https://git.kernel.org/stable/c/48b19b79cfa37b1e50da3b5a8af529f994c08901>

---
_Exportiert aus dem [tsecurity.de CVE-Dossier](https://tsecurity.de/cve?cve=CVE-2023-53464) · Datenquellen: EUVD (ENISA), NVD, OSV, CISA KEV, FIRST EPSS, Exploit-DB, BSI BITS_
