CVE-2023-53668Out-of-bounds Read in Linux

Severity
7.1HIGHNVD
EPSS
0.0%
top 96.97%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedOct 7

Description

In the Linux kernel, the following vulnerability has been resolved: ring-buffer: Fix deadloop issue on reading trace_pipe Soft lockup occurs when reading file 'trace_pipe': watchdog: BUG: soft lockup - CPU#6 stuck for 22s! [cat:4488] [...] RIP: 0010:ring_buffer_empty_cpu+0xed/0x170 RSP: 0018:ffff88810dd6fc48 EFLAGS: 00000246 RAX: 0000000000000000 RBX: 0000000000000246 RCX: ffffffff93d1aaeb RDX: ffff88810a280040 RSI: 0000000000000008 RDI: ffff88811164b218 RBP: ffff88811164b218 R08: 00000000000

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:HExploitability: 1.8 | Impact: 5.2

Affected Packages4 packages

NVDlinux/linux_kernel3.64.14.322+7
Debianlinux/linux_kernel< 5.10.191-1+3
CVEListV5linux/linuxa5fb833172eca69136e9ee1ada778e404086ab8a0a29dae5786d263016a9aceb1e56bf3fd4cc6fa0+8
debiandebian/linux< linux 6.1.52-1 (bookworm)

Patches

🔴Vulnerability Details

2
OSV
CVE-2023-53668: In the Linux kernel, the following vulnerability has been resolved: ring-buffer: Fix deadloop issue on reading trace_pipe Soft lockup occurs when read2025-10-07
GHSA
GHSA-r233-79v5-5734: In the Linux kernel, the following vulnerability has been resolved: ring-buffer: Fix deadloop issue on reading trace_pipe Soft lockup occurs when re2025-10-07

📋Vendor Advisories

2
Red Hat
kernel: ring-buffer: Fix deadloop issue on reading trace_pipe2025-10-07
Debian
CVE-2023-53668: linux - In the Linux kernel, the following vulnerability has been resolved: ring-buffer...2023