cbcvebase.
CVE-2023-52757
published 2024-05-21

CVE-2023-52757: In the Linux kernel, the following vulnerability has been resolved: smb: client: fix potential deadlock when releasing mids All release_mid() callers seem to…

PriorityP338high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.18%
8.3th percentile
In the Linux kernel, the following vulnerability has been resolved: smb: client: fix potential deadlock when releasing mids All release_mid() callers seem to hold a reference of @mid so there is no need to call kref_put(&mid->refcount, __release_mid) under @server->mid_lock spinlock. If they don't, then an use-after-free bug would have occurred anyways. By getting rid of such spinlock also fixes a potential deadlock as shown below CPU 0 CPU 1 cifs_demultiplex_thread() cifs_debug_data_proc_show() release_mid() spin_lock(&server->mid_lock); spin_lock(&cifs_tcp_ses_lock) spin_lock(&server->mid_lock) __release_mid() smb2_find_smb_tcon() spin_lock(&cifs_tcp_ses_lock) *deadlock*

Affected

24 ranges
VendorProductVersion rangeFixed in
debiandebian_linux
debianlinux< linux 6.1.64-1 (bookworm)linux 6.1.64-1 (bookworm)
linuxlinux
linuxlinux
linuxlinux>= 5.4.6 < 5.55.5
linuxlinux>= 7b71843fa7028475b052107664cbe120156a2cfc < 99f476e27aad5964ab13777d84fda67d1356dec199f476e27aad5964ab13777d84fda67d1356dec1
linuxlinux>= 7b71843fa7028475b052107664cbe120156a2cfc < ce49569079a9d4cad26c0f1d4653382fd9a5ca7ace49569079a9d4cad26c0f1d4653382fd9a5ca7a
linuxlinux>= 7b71843fa7028475b052107664cbe120156a2cfc < 9eb44db68c5b7f5aa22b8fc7de74a3e2e08d1f299eb44db68c5b7f5aa22b8fc7de74a3e2e08d1f29
linuxlinux>= 7b71843fa7028475b052107664cbe120156a2cfc < b9bb9607b1fc12fca51f5632da25b36975f599bfb9bb9607b1fc12fca51f5632da25b36975f599bf
linuxlinux>= 7b71843fa7028475b052107664cbe120156a2cfc < c1a5962f1462b64fe7b69f20a4b6af8067bc2d26c1a5962f1462b64fe7b69f20a4b6af8067bc2d26
linuxlinux>= 7b71843fa7028475b052107664cbe120156a2cfc < e6322fd177c6885a21dd4609dc5e5c973d1a2eb7e6322fd177c6885a21dd4609dc5e5c973d1a2eb7
linuxlinux_kernel< 5.10.2375.10.237
linuxlinux_kernel>= 0 < 5.10.237-15.10.237-1
linuxlinux_kernel>= 0 < 6.1.64-16.1.64-1
linuxlinux_kernel>= 0 < 6.6.8-16.6.8-1
linuxlinux_kernel>= 0 < 6.6.8-16.6.8-1
linuxlinux_kernel>= 0 < 5.15.0-144.1575.15.0-144.157
linuxlinux_kernel>= 0 < 4.15.0-240.2524.15.0-240.252
linuxlinux_kernel>= 0 < 5.4.0-220.2405.4.0-220.240
linuxlinux_kernel>= 5.11 < 5.15.1815.15.181
linuxlinux_kernel>= 5.16 < 6.1.646.1.64
linuxlinux_kernel>= 6.2 < 6.5.136.5.13
linuxlinux_kernel>= 6.6 < 6.6.36.6.3
msrccbl2_kernel_5.15.182.1-1_on_cbl_mariner_2.0

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv8.8HIGH
vendor_ubuntu8.8HIGH
vendor_debian7.8HIGH
vendor_redhat7.8HIGH
vendor_msrc5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.