An out-of-bounds read issue was found in the NVMe-oF/TCP subsystem in the Linux kernel. A remote attacker could send a crafted TCP packet triggering a heap-based buffer overflow that results in kmalloc data to be printed (and potentially leaked) to the kernel ring buffer (dmesg).
Created kernel tracking bugs for this issue:
Affects: fedora-all [bug 2250044]
This was fixed for Fedora with the 6.6.4 stable kernel updates.