cbcvebase.
CVE-2023-54028
published 2025-12-24

CVE-2023-54028: In the Linux kernel, the following vulnerability has been resolved: RDMA/rxe: Fix the error "trying to register non-static key in rxe_cleanup_task" In the…

PriorityP419medium5.5
EPSS
0.17%
7.1th percentile
In the Linux kernel, the following vulnerability has been resolved: RDMA/rxe: Fix the error "trying to register non-static key in rxe_cleanup_task" In the function rxe_create_qp(), rxe_qp_from_init() is called to initialize qp, internally things like rxe_init_task are not setup until rxe_qp_init_req(). If an error occurred before this point then the unwind will call rxe_cleanup() and eventually to rxe_qp_do_cleanup()/rxe_cleanup_task() which will oops when trying to access the uninitialized spinlock. If rxe_init_task is not executed, rxe_cleanup_task will not be called.

Affected

12 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.37-1 (bookworm)linux 6.1.37-1 (bookworm)
linuxlinux
linuxlinux>= 8700e3e7c4857d28ebaa824509934556da0b3e76 < 3236221bb8e4de8e3d0c8385f634064fb26b8e383236221bb8e4de8e3d0c8385f634064fb26b8e38
linuxlinux>= 8700e3e7c4857d28ebaa824509934556da0b3e76 < c8473cd5b301279a41dc75e5afb26b3d5223b6c7c8473cd5b301279a41dc75e5afb26b3d5223b6c7
linuxlinux>= 8700e3e7c4857d28ebaa824509934556da0b3e76 < 0d938264fcfe4927e54f0e519da05af1d5d720b40d938264fcfe4927e54f0e519da05af1d5d720b4
linuxlinux>= 8700e3e7c4857d28ebaa824509934556da0b3e76 < b2b1ddc457458fecd1c6f385baa9fbda5f0c63adb2b1ddc457458fecd1c6f385baa9fbda5f0c63ad
linuxlinux_kernel>= 0 < 6.1.37-16.1.37-1
linuxlinux_kernel>= 0 < 6.3.7-16.3.7-1
linuxlinux_kernel>= 0 < 6.3.7-16.3.7-1
linuxlinux_kernel>= 4.8.0 < 6.1.326.1.32
linuxlinux_kernel>= 6.2.0 < 6.2.156.2.15
linuxlinux_kernel>= 6.3.0 < 6.3.26.3.2
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.