CVE-2023-54003
published 2025-12-24CVE-2023-54003: In the Linux kernel, the following vulnerability has been resolved: RDMA/core: Fix GID entry ref leak when create_ah fails If AH create request fails, release…
PriorityP418medium5.5
EPSS
0.18%
8.2th percentile
In the Linux kernel, the following vulnerability has been resolved:
RDMA/core: Fix GID entry ref leak when create_ah fails
If AH create request fails, release sgid_attr to avoid GID entry
referrence leak reported while releasing GID table
Affected
17 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 6.1.25-1 (bookworm) | linux 6.1.25-1 (bookworm) |
| linux | linux | — | — |
| linux | linux | >= 1a1f460ff151710289c2f8d4badd8b603b87d610 < 9c46c49ad3ffe84121715d392b5a0a94f9f10669 | 9c46c49ad3ffe84121715d392b5a0a94f9f10669 |
| linux | linux | >= 1a1f460ff151710289c2f8d4badd8b603b87d610 < d1b9b3191697a80aca8e247320eba46f24d41d18 | d1b9b3191697a80aca8e247320eba46f24d41d18 |
| linux | linux | >= 1a1f460ff151710289c2f8d4badd8b603b87d610 < e97ff11b396c320d2cc025b09741ba432fcb20a2 | e97ff11b396c320d2cc025b09741ba432fcb20a2 |
| linux | linux | >= 1a1f460ff151710289c2f8d4badd8b603b87d610 < 370280c65c28a515b841c9f2c08524f06182510c | 370280c65c28a515b841c9f2c08524f06182510c |
| linux | linux | >= 1a1f460ff151710289c2f8d4badd8b603b87d610 < 632d6baf8884d803e598bf5164008d23fd9b736c | 632d6baf8884d803e598bf5164008d23fd9b736c |
| linux | linux | >= 1a1f460ff151710289c2f8d4badd8b603b87d610 < aca3b0fa3d04b40c96934d86cc224cccfa7ea8e0 | aca3b0fa3d04b40c96934d86cc224cccfa7ea8e0 |
| linux | linux_kernel | >= 0 < 5.10.178-1 | 5.10.178-1 |
| linux | linux_kernel | >= 0 < 6.1.25-1 | 6.1.25-1 |
| linux | linux_kernel | >= 0 < 6.1.25-1 | 6.1.25-1 |
| linux | linux_kernel | >= 0 < 6.1.25-1 | 6.1.25-1 |
| linux | linux_kernel | >= 4.19.0 < 5.4.241 | 5.4.241 |
| linux | linux_kernel | >= 5.11.0 < 5.15.108 | 5.15.108 |
| linux | linux_kernel | >= 5.16.0 < 6.1.25 | 6.1.25 |
| linux | linux_kernel | >= 5.5.0 < 5.10.178 | 5.10.178 |
| linux | linux_kernel | >= 6.2.0 < 6.2.12 | 6.2.12 |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
kernel: Linux kernel: RDMA/core GID entry leak causes Denial of Service
vendor_redhat·2025-12-24·CVSS 5.5
CVE-2023-54003 [MEDIUM] CWE-772 kernel: Linux kernel: RDMA/core GID entry leak causes Denial of Service
kernel: Linux kernel: RDMA/core GID entry leak causes Denial of Service
In the Linux kernel, the following vulnerability has been resolved:
RDMA/core: Fix GID entry ref leak when create_ah fails
If AH create request fails, release sgid_attr to avoid GID entry
referrence leak reported while releasing GID table
A flaw was found in the Linux kernel's Remote Direct Memory Access (RDMA) core component. A local user with low privileges could trigger a Global Identifier (GID) entry reference leak when an Address Handle (AH) creation request fails. This resource leak could lead to system instability and a Denial of Service (DoS).
Package: kernel (Red Hat Enterprise Linux 10) - Not affected
Package: kernel (Red Hat Enterprise Linux 6) - Out of support scope
Package: kernel (Red Hat Enterprise
Debian
CVE-2023-54003: linux - In the Linux kernel, the following vulnerability has been resolved: RDMA/core: ...
vendor_debian·2023
CVE-2023-54003 CVE-2023-54003: linux - In the Linux kernel, the following vulnerability has been resolved: RDMA/core: ...
In the Linux kernel, the following vulnerability has been resolved: RDMA/core: Fix GID entry ref leak when create_ah fails If AH create request fails, release sgid_attr to avoid GID entry referrence leak reported while releasing GID table
Scope: local
bookworm: resolved (fixed in 6.1.25-1)
bullseye: resolved (fixed in 5.10.178-1)
forky: resolved (fixed in 6.1.25-1)
sid: resolved (fixed in 6.1.25-1)
trixie: resolved (fixed in 6.1.25-1)
OSV
CVE-2023-54003: In the Linux kernel, the following vulnerability has been resolved: RDMA/core: Fix GID entry ref leak when create_ah fails If AH create request fails,
osv·2025-12-24
CVE-2023-54003 CVE-2023-54003: In the Linux kernel, the following vulnerability has been resolved: RDMA/core: Fix GID entry ref leak when create_ah fails If AH create request fails,
In the Linux kernel, the following vulnerability has been resolved: RDMA/core: Fix GID entry ref leak when create_ah fails If AH create request fails, release sgid_attr to avoid GID entry referrence leak reported while releasing GID table
GHSA
GHSA-v7fh-fh2g-3493: In the Linux kernel, the following vulnerability has been resolved:
RDMA/core: Fix GID entry ref leak when create_ah fails
If AH create request fail
ghsa_unreviewed·2025-12-24
CVE-2023-54003 GHSA-v7fh-fh2g-3493: In the Linux kernel, the following vulnerability has been resolved:
RDMA/core: Fix GID entry ref leak when create_ah fails
If AH create request fail
In the Linux kernel, the following vulnerability has been resolved:
RDMA/core: Fix GID entry ref leak when create_ah fails
If AH create request fails, release sgid_attr to avoid GID entry
referrence leak reported while releasing GID table
OSV
RDMA/core: Fix GID entry ref leak when create_ah fails
osv·2025-12-24
CVE-2023-54003 RDMA/core: Fix GID entry ref leak when create_ah fails
RDMA/core: Fix GID entry ref leak when create_ah fails
In the Linux kernel, the following vulnerability has been resolved:
RDMA/core: Fix GID entry ref leak when create_ah fails
If AH create request fails, release sgid_attr to avoid GID entry
referrence leak reported while releasing GID table
No detection rules found.
No public exploits indexed.
Wiz
CVE-2023-54003 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz
CVE-2023-54003 CVE-2023-54003 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2023-54003 :
Linux Kernel vulnerability analysis and mitigation
In the Linux kernel, the following vulnerability has been resolved:
RDMA/core: Fix GID entry ref leak when create_ah fails
If AH create request fails, release sgid_attr to avoid GID entry
referrence leak reported while releasing GID table
Source : NVD
Published December 24, 2025
CNA Score N/A
Affected Technologies
Linux Kernel
Linux Debian
Has Public Exploit No
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 10.8
Exploitation Probability (EPSS) N/A
Affected packages and libraries
kernel-64k-debug-modules-partner
kernel-abi-whitelists
Sources
NVD
Debian 11, 12, 13, 14 Has Fix Added at: Dec 26, 2025
Echo Has Fix Added at: Dec 26, 202
Bugzilla
CVE-2023-54003 kernel: Linux kernel: RDMA/core GID entry leak causes Denial of Service
bugzilla·2025-12-24
CVE-2023-54003 [MEDIUM] CVE-2023-54003 kernel: Linux kernel: RDMA/core GID entry leak causes Denial of Service
CVE-2023-54003 kernel: Linux kernel: RDMA/core GID entry leak causes Denial of Service
In the Linux kernel, the following vulnerability has been resolved:
RDMA/core: Fix GID entry ref leak when create_ah fails
If AH create request fails, release sgid_attr to avoid GID entry
referrence leak reported while releasing GID table
Discussion:
Upstream advisory:
https://lore.kernel.org/linux-cve-announce/2025122427-CVE-2023-54003-01b7@gregkh/T
https://git.kernel.org/stable/c/370280c65c28a515b841c9f2c08524f06182510chttps://git.kernel.org/stable/c/632d6baf8884d803e598bf5164008d23fd9b736chttps://git.kernel.org/stable/c/9c46c49ad3ffe84121715d392b5a0a94f9f10669https://git.kernel.org/stable/c/aca3b0fa3d04b40c96934d86cc224cccfa7ea8e0https://git.kernel.org/stable/c/d1b9b3191697a80aca8e247320eba46f24d41d18https://git.kernel.org/stable/c/e97ff11b396c320d2cc025b09741ba432fcb20a2
2025-12-24
Published