CVE-2023-54108 - CVE House
Back to Database
Status published Unknown CVE-2023-54108

scsi: qla2xxx: Fix DMA-API call trace on NVMe LS requests

Vulnerability Description

In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Fix DMA-API call trace on NVMe LS requests The following message and call trace was seen with debug kernels: DMA-API: qla2xxx 0000:41:00.0: device driver failed to check map error [device address=0x00000002a3ff38d8] [size=1024 bytes] [mapped as single] WARNING: CPU: 0 PID: 2930 at kernel/dma/debug.c:1017 check_unmap+0xf42/0x1990 Call Trace: debug_dma_unmap_page+0xc9/0x100 qla_nvme_ls_unmap+0x141/0x210 [qla2xxx] Remove DMA mapping from the driver altogether, as it is already done by FC layer. This prevents the warning.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2023-54108

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Affected Software

Linux
Vulnerable Versions:
2d087c7e55db420107c3ea97b228e067a7b488a1, 0910a791a6d7fd331f231f48200e18babb519769, c9d6081a5f18286ad62afc1e9e06a90cfd626902, c85ab7d9e27a80e48d5b7d7fb2fe2b0fdb2de523, 9765319079131d6a6019caec661825808c6405f1, c05f4f6485726faae08073f947368ee10439d3f0, 5.4.189, 5.10.110, 5.15.33, 5.16.19, 5.17.2, 5.18, 0, 5.4.235, 5.10.173, 5.15.99, 6.1.16, 6.2.3, 6.3

Timeline

Official Publish: December 24th, 2025
Last Modified: May 23rd, 2026
Added to House: July 22nd, 2026

CVSS Vectors

No vector data available

Weaknesses (CWE)

No CWE data available

MITRE ATT&CK TTPs

No associated TTPs found for this vulnerability.