PT-2025-54047 · Linux · Linux Kernel

Published

2025-12-30

·

Updated

2026-02-12

·

CVE-2023-54218

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 6.3.0-rc7-02330-gca6270c12e20
Description The Linux kernel contained a data race condition in the sock recv cmsgs() function, specifically related to accessing sk->sk stamp. Kernel Concurrency Sanitizer (KCSAN) identified that a read access to sk->sk stamp required READ ONCE() to prevent load-tearing. The issue was observed during packet recvmsg and sock recvmsg operations. The vulnerability was reported by KCSAN and addressed in a recent kernel build. The functions involved include sock write timestamp, sock recv cmsgs, packet recvmsg, sock recvmsg nosec, sock read iter, call read iter, vfs read, ksys read, do sys read, se sys read, and x64 sys read.
Recommendations Update to a version of the Linux kernel newer than 6.3.0-rc7-02330-gca6270c12e20.

Exploit

Related Identifiers

CVE-2023-54218
OESA-2026-1276
SUSE-SU-2026:0473-1

Affected Products

Linux Kernel