CVE-2023-54096 — Missing Synchronization in Linux
Severity
6.1MEDIUM
No vectorEPSS
0.0%
top 92.57%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedDec 24
Description
In the Linux kernel, the following vulnerability has been resolved:
soundwire: fix enumeration completion
The soundwire subsystem uses two completion structures that allow
drivers to wait for soundwire device to become enumerated on the bus and
initialised by their drivers, respectively.
The code implementing the signalling is currently broken as it does not
signal all current and future waiters and also uses the wrong
reinitialisation function, which can potentially lead to memory
corruption…
Affected Packages4 packages
▶CVEListV5linux/linuxfb9469e54fa7a7b6a8137c40ae66c41b8d0ab175 — 48d1d0ce0782f995fda678508fdae35c5e9593f0+5
🔴Vulnerability Details
3OSV▶
CVE-2023-54096: In the Linux kernel, the following vulnerability has been resolved: soundwire: fix enumeration completion The soundwire subsystem uses two completion↗2025-12-24
GHSA▶
GHSA-qr7q-qr63-44c5: In the Linux kernel, the following vulnerability has been resolved:
soundwire: fix enumeration completion
The soundwire subsystem uses two completio↗2025-12-24