A vulnerability classified as critical has been found in Linux Kernel up to 6.1.102/6.6.43/6.10.2. Affected is the function qla_nvme_register_remote. The manipulation leads to null pointer dereference.

This vulnerability is traded as CVE-2024-42286. Access to the local network is required for this attack to succeed. There is no exploit available.

It is recommended to upgrade the affected component.