CVE-2023-54045 — Linux vulnerability
7 documents6 sources
Severity
5.8MEDIUM
No vectorEPSS
0.0%
top 84.94%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedDec 24
Description
In the Linux kernel, the following vulnerability has been resolved:
audit: fix possible soft lockup in __audit_inode_child()
Tracefs or debugfs maybe cause hundreds to thousands of PATH records,
too many PATH records maybe cause soft lockup.
For example:
1. CONFIG_KASAN=y && CONFIG_PREEMPTION=n
2. auditctl -a exit,always -S open -k key
3. sysctl -w kernel.watchdog_thresh=5
4. mkdir /sys/kernel/debug/tracing/instances/test
There may be a soft lockup as follows:
watchdog: BUG: soft lockup - CP…
Affected Packages4 packages
▶CVEListV5linux/linux5195d8e217a78697152d64fc09a16e063a022465 — d061e2bfc20f2914656385816e0d20566213c54c+9
🔴Vulnerability Details
3OSV▶
CVE-2023-54045: In the Linux kernel, the following vulnerability has been resolved: audit: fix possible soft lockup in __audit_inode_child() Tracefs or debugfs maybe↗2025-12-24
GHSA▶
GHSA-857x-v7jh-w473: In the Linux kernel, the following vulnerability has been resolved:
audit: fix possible soft lockup in __audit_inode_child()
Tracefs or debugfs mayb↗2025-12-24