PT-2025-13375 · Linux+4 · Linux Kernel+4

Published

2023-05-09

·

Updated

2025-09-29

·

CVE-2023-53029

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 6.2.0-rc3-rt1-yocto-preempt-rt #1
Description A vulnerability in the Linux kernel has been resolved, specifically in the octeontx2-pf module. The issue arises from the use of GFP KERNEL in an atomic context on real-time (rt) kernels, leading to warnings about sleeping functions being called from invalid contexts. This problem occurs due to the unnecessary disabling of preemption for blockable memory allocation. The vulnerability affects the rt kernel, causing warnings and potential issues with memory allocation and spinlock usage.
Recommendations For Linux kernel version 6.2.0-rc3-rt1-yocto-preempt-rt #1 and earlier, consider updating to a newer version that includes the fix for the use of GFP KERNEL in atomic context on rt kernels. As a temporary workaround, review the usage of get/put cpu() and consider moving it into the corresponding callback to avoid redundant usage and minimize the risk of exploitation. Restrict access to the vulnerable module octeontx2-pf to minimize the risk of exploitation until a patch is available.

Exploit

Fix

DoS

Use After Free

Improper Locking

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2025_16880
BDU:2025-06337
CVE-2023-53029
OPENSUSE-SU-2025_1195-1
RHSA-2023:2458
RHSA-2023_2458
SUSE-SU-2025:1176-1
SUSE-SU-2025:1183-1
SUSE-SU-2025:1195-1
SUSE-SU-2025:1241-1
SUSE-SU-2025_1195-1
SUSE-SU-2025_1241-1

Affected Products

Astra Linux
Linux Kernel
Red Hat
Red Os
Suse