PT-2025-40217 · Linux+3 · Linux Kernel+3

Published

2023-05-24

·

Updated

2026-05-26

·

CVE-2023-53510

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A flaw exists in the Linux kernel’s SCSI subsystem, specifically within the UFS (Universal Storage Flash) core. The ufshcd queuecommand() function may be invoked multiple times for a single SCSI command before its completion. This occurs because the code incorrectly handles the lrbp->cmd variable, potentially leading to a warning and unexpected behavior, particularly when a command times out. The issue is related to how SCSI error handling is managed, as seen in the scsi send eh cmnd() function. The fix involves modifying the command submission process and the ufshcd release scsi cmd() function to prevent incorrect handling of the lrbp->cmd variable in both successful and error scenarios.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

DoS

Double Free

RCE

Weakness Enumeration

Related Identifiers

ALSA-2025_12746
ALSA-2025_12752
ALSA-2025_12753
ALSA-2025_16880
AZL-75243
BDU:2025-12899
CVE-2023-53510
ECHO-C76F-31E8-6CE9
RHSA-2025:6966
RHSA-2025_6966
SUSE-SU-2025:03600-1
SUSE-SU-2025:03634-1
SUSE-SU-2025:20851-1
SUSE-SU-2025:20861-1
SUSE-SU-2025:20870-1
SUSE-SU-2025:20898-1
SUSE-SU-2025:3751-1
SUSE-SU-2025:4057-1
SUSE-SU-2025:4132-1
SUSE-SU-2025:4141-1

Affected Products

Debian
Linux Kernel
Red Hat
Suse