PT-2025-18834 · Linux+5 · Linux Kernel+5

Published

2023-03-14

·

Updated

2026-01-28

·

CVE-2023-53070

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 6.3.0-rc1
Description A vulnerability in the Linux kernel has been resolved, related to the ACPI PPTT (Processor Properties Topology Table). The issue occurred when the PPTT was absent from the system, causing the acpi get pptt() function to be called from secondary CPUs in the atomic context, resulting in a potential sleep while waiting for a mutex. This led to a BUG message being printed, indicating a sleeping function was called from an invalid context. The estimated number of potentially affected devices is not provided.
Recommendations For Linux kernel versions prior to 6.3.0-rc1, update the kernel to a version that includes the fix for the PPTT issue, specifically the commit 0c80f9e165f8, to avoid the potential sleep in the atomic context when PPTT is absent. As a temporary workaround, consider modifying the acpi get pptt() function to return NULL when the PPTT is not available, avoiding any attempts to fetch PPTT and thereby avoiding any possible sleep waiting for a mutex in the atomic context.

Exploit

Fix

DoS

Stack Overflow

Unchecked Return Value

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2025_16880
BDU:2026-03919
CESA-2024_3138
CVE-2023-53070
RHSA-2023:6583
RHSA-2023_6583
RHSA-2024:3138
RHSA-2024_3138
SUSE-SU-2025:01966-1
SUSE-SU-2025:02173-1
SUSE-SU-2025:2173-1
SUSE-SU-2025_02173-1

Affected Products

Astra Linux
Centos
Linux Kernel
Red Hat
Red Os
Suse