PT-2025-13375 · Linux+4 · Linux Kernel+4
Published
2023-05-09
·
Updated
2025-09-29
·
CVE-2023-53029
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Linux kernel versions prior to 6.2.0-rc3-rt1-yocto-preempt-rt #1
Description
A vulnerability in the Linux kernel has been resolved, specifically in the octeontx2-pf module. The issue arises from the use of GFP KERNEL in an atomic context on real-time (rt) kernels, leading to warnings about sleeping functions being called from invalid contexts. This problem occurs due to the unnecessary disabling of preemption for blockable memory allocation. The vulnerability affects the rt kernel, causing warnings and potential issues with memory allocation and spinlock usage.
Recommendations
For Linux kernel version 6.2.0-rc3-rt1-yocto-preempt-rt #1 and earlier, consider updating to a newer version that includes the fix for the use of GFP KERNEL in atomic context on rt kernels. As a temporary workaround, review the usage of get/put cpu() and consider moving it into the corresponding callback to avoid redundant usage and minimize the risk of exploitation. Restrict access to the vulnerable module
octeontx2-pf to minimize the risk of exploitation until a patch is available.Exploit
Fix
DoS
Use After Free
Improper Locking
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Astra Linux
Linux Kernel
Red Hat
Red Os
Suse