PT-2025-54164 · Linux · Linux Kernel

Published

2023-09-10

·

Updated

2026-03-24

·

CVE-2023-54318

CVSS v2.0

4.6

Medium

VectorAV:L/AC:L/Au:S/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description The Linux kernel contains a flaw within the smc (SMC) networking subsystem. Specifically, a kernel crash can occur during the smcr port add function due to concurrent access and modification of the smc lgr list.list while iterating through it. This happens when linkgroups are added or deleted from the list simultaneously. The issue is addressed by using smc lgr list.lock to protect the list iteration within smcr port add. The crash manifests as a NULL pointer dereference, potentially leading to system instability.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

NULL Pointer Dereference

Weakness Enumeration

Related Identifiers

BDU:2026-01170
CVE-2023-54318
RHSA-2025:20518
SUSE-SU-2026:0278-1
SUSE-SU-2026:0281-1
SUSE-SU-2026:0293-1
SUSE-SU-2026:0315-1
SUSE-SU-2026:20477-1
SUSE-SU-2026:20498-1
SUSE-SU-2026:20845-1
SUSE-SU-2026:20876-1

Affected Products

Linux Kernel