cbcvebase.
CVE-2023-53044
published 2025-05-02

CVE-2023-53044: In the Linux kernel, the following vulnerability has been resolved: dm stats: check for and propagate alloc_percpu failure Check alloc_precpu()'s return value…

PriorityP419medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.19%
8.9th percentile
In the Linux kernel, the following vulnerability has been resolved: dm stats: check for and propagate alloc_percpu failure Check alloc_precpu()'s return value and return an error from dm_stats_init() if it fails. Update alloc_dev() to fail if dm_stats_init() does. Otherwise, a NULL pointer dereference will occur in dm_stats_cleanup() even if dm-stats isn't being actively used.

Affected

22 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.25-1 (bookworm)linux 6.1.25-1 (bookworm)
linuxlinux
linuxlinux>= fd2ed4d252701d3bbed4cd3e3d267ad469bb832a < 2287d7b721471a3d58bcd829250336e3cdf1635e2287d7b721471a3d58bcd829250336e3cdf1635e
linuxlinux>= fd2ed4d252701d3bbed4cd3e3d267ad469bb832a < 0d96bd507ed7e7d565b6d53ebd3874686f123b2e0d96bd507ed7e7d565b6d53ebd3874686f123b2e
linuxlinux>= fd2ed4d252701d3bbed4cd3e3d267ad469bb832a < 4a32a9a818a895671bd43e0c40351e60e4e9140b4a32a9a818a895671bd43e0c40351e60e4e9140b
linuxlinux>= fd2ed4d252701d3bbed4cd3e3d267ad469bb832a < c68f08cc745675a17894e1b4a5b5b9700ace6da4c68f08cc745675a17894e1b4a5b5b9700ace6da4
linuxlinux>= fd2ed4d252701d3bbed4cd3e3d267ad469bb832a < 443c9d522397511a4328dc2ec3c9c63c73049756443c9d522397511a4328dc2ec3c9c63c73049756
linuxlinux>= fd2ed4d252701d3bbed4cd3e3d267ad469bb832a < a42180dd361584816bfe15c137b665699b994d90a42180dd361584816bfe15c137b665699b994d90
linuxlinux>= fd2ed4d252701d3bbed4cd3e3d267ad469bb832a < 5b66e36a3efd24041b7374432bfa4dec2ff01e955b66e36a3efd24041b7374432bfa4dec2ff01e95
linuxlinux>= fd2ed4d252701d3bbed4cd3e3d267ad469bb832a < d3aa3e060c4a80827eb801fc448debc9daa7c46bd3aa3e060c4a80827eb801fc448debc9daa7c46b
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.178-15.10.178-1
linuxlinux_kernel>= 0 < 6.1.25-16.1.25-1
linuxlinux_kernel>= 0 < 6.1.25-16.1.25-1
linuxlinux_kernel>= 0 < 6.1.25-16.1.25-1
linuxlinux_kernel>= 3.12 < 4.14.3124.14.312
linuxlinux_kernel>= 4.15 < 4.19.2804.19.280
linuxlinux_kernel>= 4.20 < 5.4.2405.4.240
linuxlinux_kernel>= 5.11 < 5.15.1055.15.105
linuxlinux_kernel>= 5.16 < 6.1.226.1.22
linuxlinux_kernel>= 5.5 < 5.10.1775.10.177
linuxlinux_kernel>= 6.2 < 6.2.96.2.9

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.