cbcvebase.
CVE-2023-52672
published 2024-05-17

CVE-2023-52672: In the Linux kernel, the following vulnerability has been resolved: pipe: wakeup wr_wait after setting max_usage Commit c73be61cede5 ("pipe: Add general…

PriorityP419medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.26%
17.0th percentile
In the Linux kernel, the following vulnerability has been resolved: pipe: wakeup wr_wait after setting max_usage Commit c73be61cede5 ("pipe: Add general notification queue support") a regression was introduced that would lock up resized pipes under certain conditions. See the reproducer in [1]. The commit resizing the pipe ring size was moved to a different function, doing that moved the wakeup for pipe->wr_wait before actually raising pipe->max_usage. If a pipe was full before the resize occured it would result in the wakeup never actually triggering pipe_write. Set @max_usage and @nr_accounted before waking writers if this isn't a watch queue. [Christian Brauner : rewrite to account for watch queues]

Affected

18 ranges
VendorProductVersion rangeFixed in
debiandebian_linux
debianlinux< linux 6.1.76-1 (bookworm)linux 6.1.76-1 (bookworm)
linuxlinux
linuxlinux>= c73be61cede5882f9605a852414db559c0ebedfd < 162ae0e78bdabf84ef10c1293c4ed7865cb7d3c8162ae0e78bdabf84ef10c1293c4ed7865cb7d3c8
linuxlinux>= c73be61cede5882f9605a852414db559c0ebedfd < 3efbd114b91525bb095b8ae046382197d92126b93efbd114b91525bb095b8ae046382197d92126b9
linuxlinux>= c73be61cede5882f9605a852414db559c0ebedfd < b87a1229d8668fbc78ebd9ca0fc797a76001c60fb87a1229d8668fbc78ebd9ca0fc797a76001c60f
linuxlinux>= c73be61cede5882f9605a852414db559c0ebedfd < 68e51bdb1194f11d3452525b99c98aff6f837b2468e51bdb1194f11d3452525b99c98aff6f837b24
linuxlinux>= c73be61cede5882f9605a852414db559c0ebedfd < 6fb70694f8d1ac34e45246b0ac988f025e1e5b556fb70694f8d1ac34e45246b0ac988f025e1e5b55
linuxlinux>= c73be61cede5882f9605a852414db559c0ebedfd < e95aada4cb93d42e25c30a0ef9eb2923d9711d4ae95aada4cb93d42e25c30a0ef9eb2923d9711d4a
linuxlinux_kernel>= 0 < 5.10.216-15.10.216-1
linuxlinux_kernel>= 0 < 6.1.76-16.1.76-1
linuxlinux_kernel>= 0 < 6.6.15-16.6.15-1
linuxlinux_kernel>= 0 < 6.6.15-16.6.15-1
linuxlinux_kernel>= 5.11 < 5.15.1495.15.149
linuxlinux_kernel>= 5.16 < 6.1.766.1.76
linuxlinux_kernel>= 5.8 < 5.10.2105.10.210
linuxlinux_kernel>= 6.2 < 6.6.156.6.15
linuxlinux_kernel>= 6.7 < 6.7.36.7.3

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv7.5HIGH
vendor_ubuntu6.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.