cbcvebase.
CVE-2023-52583
published 2024-03-06

CVE-2023-52583: In the Linux kernel, the following vulnerability has been resolved: ceph: fix deadlock or deadcode of misusing dget() The lock order is incorrect between denty…

PriorityP418medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.18%
7.9th percentile
In the Linux kernel, the following vulnerability has been resolved: ceph: fix deadlock or deadcode of misusing dget() The lock order is incorrect between denty and its parent, we should always make sure that the parent get the lock first. But since this deadcode is never used and the parent dir will always be set from the callers, let's just remove it.

Affected

25 ranges
VendorProductVersion rangeFixed in
debiandebian_linux
debianlinux< linux 6.1.82-1 (bookworm)linux 6.1.82-1 (bookworm)
linuxlinux
linuxlinux>= 9030aaf9bf0a1eee47a154c316c789e959638b0f < eb55ba8aa7fb7aad54f40fbf4d8dcdfdba0bebf6eb55ba8aa7fb7aad54f40fbf4d8dcdfdba0bebf6
linuxlinux>= 9030aaf9bf0a1eee47a154c316c789e959638b0f < 6ab4fd508fad942f1f1ba940492f2735e078e9806ab4fd508fad942f1f1ba940492f2735e078e980
linuxlinux>= 9030aaf9bf0a1eee47a154c316c789e959638b0f < e016e358461b89b231626fcf78c5c38e35c44fd3e016e358461b89b231626fcf78c5c38e35c44fd3
linuxlinux>= 9030aaf9bf0a1eee47a154c316c789e959638b0f < a9c15d6e8aee074fae66c04d114f20b84274fccaa9c15d6e8aee074fae66c04d114f20b84274fcca
linuxlinux>= 9030aaf9bf0a1eee47a154c316c789e959638b0f < 7f2649c94264d00df6b6ac27161e9f4372a3450e7f2649c94264d00df6b6ac27161e9f4372a3450e
linuxlinux>= 9030aaf9bf0a1eee47a154c316c789e959638b0f < 196b87e5c00ce021e164a5de0f0d04f4116a9160196b87e5c00ce021e164a5de0f0d04f4116a9160
linuxlinux>= 9030aaf9bf0a1eee47a154c316c789e959638b0f < 76cb2aa3421fee4fde706dec41b1344bc0a9ad6776cb2aa3421fee4fde706dec41b1344bc0a9ad67
linuxlinux>= 9030aaf9bf0a1eee47a154c316c789e959638b0f < b493ad718b1f0357394d2cdecbf00a44a36fa085b493ad718b1f0357394d2cdecbf00a44a36fa085
linuxlinux_kernel< 4.19.3074.19.307
linuxlinux_kernel>= 0 < 5.10.216-15.10.216-1
linuxlinux_kernel>= 0 < 6.1.82-16.1.82-1
linuxlinux_kernel>= 0 < 6.7.7-16.7.7-1
linuxlinux_kernel>= 0 < 6.7.7-16.7.7-1
linuxlinux_kernel>= 0 < 5.4.0-181.2015.4.0-181.201
linuxlinux_kernel>= 0 < 5.15.0-106.1165.15.0-106.116
linuxlinux_kernel>= 0 < 4.15.0-225.2374.15.0-225.237
linuxlinux_kernel>= 4.20 < 5.4.2695.4.269
linuxlinux_kernel>= 5.11 < 5.15.1495.15.149
linuxlinux_kernel>= 5.16 < 6.1.776.1.77
linuxlinux_kernel>= 5.5 < 5.10.2105.10.210
linuxlinux_kernel>= 6.2 < 6.6.166.6.16
linuxlinux_kernel>= 6.7 < 6.7.46.7.4

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv7.5HIGH
vendor_ubuntu7.5HIGH
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.