{"id":"CVE-2026-89851","published":"2026-09-16T11:16:52.757","lastModified":"2026-09-16T11:16:52.757","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nscsi: qla2xxx: Fix FCE trace enable parsing in debugfs\n\nqla2x00_dfs_fce_write() called kstrtoul() with a NULL result pointer,\nso a successful parse would dereference NULL and oops. Worse, the int\nreturn value (0 on success, negative errno on failure) was assigned to\nthe unsigned long enable flag, inverting the intended logic: a valid\nnumber was treated as \"disable\" while a parse failure enabled FCE.\n\nParse the value into enable and propagate parse errors to userspace.","cvssScore":null,"cvssSeverity":null,"cvssVector":null,"cwes":[],"vendors":[],"products":[],"references":[{"url":"https://git.kernel.org/stable/c/5762d992dddaf301e7fb78f797de407116847121","tags":[]},{"url":"https://git.kernel.org/stable/c/7203d4aed8f444e7376c2dee8d93577b37cf9989","tags":[]},{"url":"https://git.kernel.org/stable/c/9932cbd0b49d0a5ab8378d32650ffb51604ffa35","tags":[]},{"url":"https://git.kernel.org/stable/c/aac0d3cb9199121d2ce5906e06f94b793fac1052","tags":[]},{"url":"https://git.kernel.org/stable/c/b0c08c08a08b6cca0e7e192bcbe0514e41fcc55f","tags":[]},{"url":"https://git.kernel.org/stable/c/b7368687e3d11f51392d3c4774ec0263d5fbf31f","tags":[]},{"url":"https://git.kernel.org/stable/c/eff41f50461c238bd2c5cd20672a5b53e68d493a","tags":[]},{"url":"https://git.kernel.org/stable/c/f5e245164d187d1ee227140c8b2e83b67f59c1fd","tags":[]}],"exploitRefs":[],"hasPoc":false,"ai":null}