CVE-2023-54028NULL Pointer Dereference in Linux

Severity
5.5MEDIUM
No vector
EPSS
0.0%
top 92.73%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 24

Description

In the Linux kernel, the following vulnerability has been resolved: RDMA/rxe: Fix the error "trying to register non-static key in rxe_cleanup_task" In the function rxe_create_qp(), rxe_qp_from_init() is called to initialize qp, internally things like rxe_init_task are not setup until rxe_qp_init_req(). If an error occurred before this point then the unwind will call rxe_cleanup() and eventually to rxe_qp_do_cleanup()/rxe_cleanup_task() which will oops when trying to access the uninitialized s

Affected Packages4 packages

Linuxlinux/linux_kernel4.8.06.1.32+2
Debianlinux/linux_kernel< 6.1.37-1+2
CVEListV5linux/linux8700e3e7c4857d28ebaa824509934556da0b3e763236221bb8e4de8e3d0c8385f634064fb26b8e38+4
debiandebian/linux< linux 6.1.37-1 (bookworm)

🔴Vulnerability Details

3
OSV
RDMA/rxe: Fix the error "trying to register non-static key in rxe_cleanup_task"2025-12-24
OSV
CVE-2023-54028: In the Linux kernel, the following vulnerability has been resolved: RDMA/rxe: Fix the error "trying to register non-static key in rxe_cleanup_task" In2025-12-24
GHSA
GHSA-4jmf-j564-cpmx: In the Linux kernel, the following vulnerability has been resolved: RDMA/rxe: Fix the error "trying to register non-static key in rxe_cleanup_task"2025-12-24

📋Vendor Advisories

2
Red Hat
kernel: Linux kernel: Denial of Service vulnerability in RDMA/rxe component2025-12-24
Debian
CVE-2023-54028: linux - In the Linux kernel, the following vulnerability has been resolved: RDMA/rxe: F...2023

🕵️Threat Intelligence

1
Wiz
CVE-2023-54028 Impact, Exploitability, and Mitigation Steps | Wiz