CVE-2023-53823

Description

Multiple race condition vulnerabilities were found in the block layer's request quality of service (rq_qos) subsystem in the Linux kernel. The rq_qos APIs lacked proper synchronization, leading to: concurrent writes to q->rq_qos causing data corruption, NULL pointer dereferences when rq_qos_exit() races with cgroup policy activation, and memory leaks when disk deletion races with rq_qos additions. These issues can cause system instability or crashes.

Statement

These are race condition vulnerabilities in the block layer's QoS subsystem that can be triggered when using I/O cost or latency controllers through cgroups while disks are being removed. The impact requires specific timing conditions and cgroup usage.

Common Vulnerability Scoring System (CVSS) Score Details

Info alert:Important note

CVSS scores for open source components depend on vendor-specific factors (e.g. version or build chain). Therefore, Red Hat's score and impact rating can be different from NVD and other vendors. Red Hat remains the authoritative CVE Naming Authority (CNA) source for its products and services (see Red Hat classifications).

CVSS v3 Score Breakdown

Red HatNVDcve.org
Base Score5.5N/A7.8
Attack VectorLocalN/ALocal
Attack ComplexityLowN/ALow
Privileges RequiredLowN/ALow
User InteractionNoneN/ANone
ScopeUnchangedN/AUnchanged
ConfidentialityNoneN/AHigh
Integrity ImpactNoneN/AHigh
Availability ImpactHighN/AHigh

Vector

Red Hat: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

cve.org: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Understanding the Weakness (CWE)

Integrity,Other

Technical Impact: Alter Execution Logic; Unexpected State

The main problem is that -- if a lock is overcome -- data could be altered in a bad state.

Frequently Asked Questions

Want to get errata notifications? Sign up here.