CVE-2023-54107 — Use After Free in Linux
Severity
5.8MEDIUM
No vectorEPSS
0.0%
top 92.35%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedDec 24
Description
In the Linux kernel, the following vulnerability has been resolved:
blk-cgroup: dropping parent refcount after pd_free_fn() is done
Some cgroup policies will access parent pd through child pd even
after pd_offline_fn() is done. If pd_free_fn() for parent is called
before child, then UAF can be triggered. Hence it's better to guarantee
the order of pd_free_fn().
Currently refcount of parent blkg is dropped in __blkg_release(), which
is before pd_free_fn() is called in blkg_free_work_fn() while…
Affected Packages3 packages
▶CVEListV5linux/linuxd578c770c85233af592e54537f93f3831bde7e9a — c7241babf0855d8a6180cd1743ff0ec34de40b4e+1
🔴Vulnerability Details
2OSV▶
CVE-2023-54107: In the Linux kernel, the following vulnerability has been resolved: blk-cgroup: dropping parent refcount after pd_free_fn() is done Some cgroup polici↗2025-12-24
GHSA▶
GHSA-4mrm-9mrj-crwx: In the Linux kernel, the following vulnerability has been resolved:
blk-cgroup: dropping parent refcount after pd_free_fn() is done
Some cgroup poli↗2025-12-24