Improper locking in Linux kernel - CVE-2023-53051
Published: May 4, 2025 / Updated: May 10, 2025
Vulnerability identifier: #VU108471
CSH Severity: Low
CVSS v4.0: CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear
CVE-ID: CVE-2023-53051
CWE-ID: CWE-667
Exploitation vector: Local access
Exploit availability:
No public exploit available
Vendor: Linux Foundation
Affected software:
Linux kernel
Linux kernel
Detailed vulnerability description
The vulnerability allows a local user to perform a denial of service (DoS) attack.
The vulnerability exists due to improper locking within the crypt_io_from_node() function in drivers/md/dm-crypt.c. A local user can perform a denial of service (DoS) attack.
How to mitigate CVE-2023-53051
Install update from vendor's website.
Sources
- https://git.kernel.org/stable/c/2c743db1193bf0e76c73d71ede08bd9b96e6c31d
- https://git.kernel.org/stable/c/66ff37993dd7e9954b6446237fe2453b380ce40d
- https://git.kernel.org/stable/c/7b9f8efb5fc888dd938d2964e705b8e00f1dc0f6
- https://git.kernel.org/stable/c/885c28ceae7dab2b18c2cc0eb95f1f82b1f629d1
- https://git.kernel.org/stable/c/e87cd83f70504f1cd2e428966f353c007d6d2d7f
- https://git.kernel.org/stable/c/eb485b7404a281d974bd445ddc5b0b8d5958f371
- https://git.kernel.org/stable/c/f0eb61b493dbbc32529fbd0d2e945b71b0e47306
- https://git.kernel.org/stable/c/fb294b1c0ba982144ca467a75e7d01ff26304e2b
- https://mirrors.edge.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.14.312
- https://mirrors.edge.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.19.280
- https://mirrors.edge.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.177
- https://mirrors.edge.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.15.105
- https://mirrors.edge.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.4.240
- https://mirrors.edge.kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.1.22
- https://mirrors.edge.kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.2.9
- https://mirrors.edge.kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.3