SB2025102359 - Improper locking in Linux kernel sched
Published: October 23, 2025 Updated: October 26, 2025
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 security vulnerability.
1) Improper locking (CVE-ID: CVE-2023-53727)
The vulnerability allows a local user to perform a denial of service (DoS) attack.
The vulnerability exists due to improper locking within the fq_pie_change() function in net/sched/sch_fq_pie.c. A local user can perform a denial of service (DoS) attack.
Remediation
Install update from vendor's website.
References
- https://git.kernel.org/stable/c/8c21ab1bae945686c602c5bfa4e3f3352c2452c5
- https://git.kernel.org/stable/c/94d527c3759d76c29220758362f622954612bea7
- https://git.kernel.org/stable/c/973a4c302d7f3804098ff9824d9f56926901f293
- https://git.kernel.org/stable/c/e093000e7d13569c9cb07d7500acd5142c3c43cb
- https://git.kernel.org/stable/c/f39b49077abec4c9c3a4c2966532004851c51006
- https://mirrors.edge.kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.1.54