CVE-2023-53760Deadlock in Linux

CWE-833Deadlock6 documents5 sources
Severity
5.5MEDIUM
No vector
EPSS
0.0%
top 89.68%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 8

Description

In the Linux kernel, the following vulnerability has been resolved: scsi: ufs: core: mcq: Fix &hwq->cq_lock deadlock issue When ufshcd_err_handler() is executed, CQ event interrupt can enter waiting for the same lock. This can happen in ufshcd_handle_mcq_cq_events() and also in ufs_mtk_mcq_intr(). The following warning message will be generated when &hwq->cq_lock is used in IRQ context with IRQ enabled. Use ufshcd_mcq_poll_cqe_lock() with spin_lock_irqsave instead of spin_lock to resolve the d

Affected Packages3 packages

Linuxlinux/linux_kernel6.3.06.3.3
CVEListV5linux/linuxed975065c31c2a0372e13c19e8140b69814a98ba2ce8c49c7b53e0a2258b833eeab16a6d78f732d1+2
debiandebian/linux

🔴Vulnerability Details

3
GHSA
GHSA-6mjv-x284-3fg6: In the Linux kernel, the following vulnerability has been resolved: scsi: ufs: core: mcq: Fix &hwq->cq_lock deadlock issue When ufshcd_err_handler()2025-12-08
OSV
CVE-2023-53760: In the Linux kernel, the following vulnerability has been resolved: scsi: ufs: core: mcq: Fix &hwq->cq_lock deadlock issue When ufshcd_err_handler() i2025-12-08
OSV
scsi: ufs: core: mcq: Fix &hwq->cq_lock deadlock issue2025-12-08

📋Vendor Advisories

2
Red Hat
kernel: Linux kernel: Denial of Service due to deadlock in Universal Flash Storage driver2025-12-08
Debian
CVE-2023-53760: linux - In the Linux kernel, the following vulnerability has been resolved: scsi: ufs: ...2023