Skip to main content

Boteraser | Website and Server Security Solutions

🛡️ CVE-2023-54219 on Ubuntu — linux

⚪ Unknown ✅ No Known Exploit OSV
N/A
CVSS Score
0 Low4 Medium7 High9 Critical10

Description

In the Linux kernel, the following vulnerability has been resolved: Revert "IB/isert: Fix incorrect release of isert connection" Commit: 699826f4e30a ("IB/isert: Fix incorrect release of isert connection") is causing problems on OPA when DEVICE_REMOVAL is happening. ------------[ cut here ]------------ WARNING: CPU: 52 PID: 2117247 at drivers/infiniband/core/cq.c:359 ib_cq_pool_cleanup+0xac/0xb0 [ib_core] Modules linked in: nfsd nfs_acl target_core_user uio tcm_fc libfc scsi_transport_fc tcm_loop target_core_pscsi target_core_iblock target_core_file rpcsec_gss_krb5 auth_rpcgss nfsv4 dns_resolver nfs lockd grace fscache netfs rfkill rpcrdma rdma_ucm ib_srpt sunrpc ib_isert iscsi_target_mod target_core_mod opa_vnic ib_iser libiscsi ib_umad scsi_transport_iscsi rdma_cm ib_ipoib iw_cm ib_cm hfi1(-) rdmavt ib_uverbs intel_rapl_msr intel_rapl_common sb_edac ib_core x86_pkg_temp_thermal intel_powerclamp coretemp i2c_i801 mxm_wmi rapl iTCO_wdt ipmi_si iTCO_vendor_support mei_me ipmi_devintf mei intel_cstate ioatdma intel_uncore i2c_smbus joydev pcspkr lpc_ich ipmi_msghandler acpi_power_meter acpi_pad xfs libcrc32c sr_mod sd_mod cdrom t10_pi sg crct10dif_pclmul crc32_pclmul crc32c_intel drm_kms_helper drm_shmem_helper ahci libahci ghash_clmulni_intel igb drm libata dca i2c_algo_bit wmi fuse CPU: 52 PID: 2117247 Comm: modprobe Not tainted 6.5.0-rc1+ #1 Hardware name: Intel Corporation S2600CWR/S2600CW, BIOS SE5C610.86B.01.01.0014.121820151719 12/18/2015 RIP: 0010:ib_cq_pool_cleanup+0xac/0xb0 [ib_core] Code: ff 48 8b 43 40 48 8d 7b 40 48 83 e8 40 4c 39 e7 75 b3 49 83 c4 10 4d 39 fc 75 94 5b 5d 41 5c 41 5d 41 5e 41 5f c3 cc cc cc cc <0f> 0b eb a1 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 90 0f 1f RSP: 0018:ffffc10bea13fc80 EFLAGS: 00010206 RAX: 000000000000010c RBX: ffff9bf5c7e66c00 RCX: 000000008020001d RDX: 000000008020001e RSI: fffff175221f9900 RDI: ffff9bf5c7e67640 RBP: ffff9bf5c7e67600 R08: ffff9bf5c7e64400 R09: 000000008020001d R10: 0000000040000000 R11: 0000000000000000 R12: ffff9bee4b1e8a18 R13: dead000000000122 R14: dead000000000100 R15: ffff9bee4b1e8a38 FS: 00007ff1e6d38740(0000) GS:ffff9bfd9fb00000(0000) knlGS:0000000000000000 CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 CR2: 00005652044ecc68 CR3: 0000000889b5c005 CR4: 00000000001706e0 Call Trace: <TASK> ? __warn+0x80/0x130 ? ib_cq_pool_cleanup+0xac/0xb0 [ib_core] ? report_bug+0x195/0x1a0 ? handle_bug+0x3c/0x70 ? exc_invalid_op+0x14/0x70 ? asm_exc_invalid_op+0x16/0x20 ? ib_cq_pool_cleanup+0xac/0xb0 [ib_core] disable_device+0x9d/0x160 [ib_core] __ib_unregister_device+0x42/0xb0 [ib_core] ib_unregister_device+0x22/0x30 [ib_core] rvt_unregister_device+0x20/0x90 [rdmavt] hfi1_unregister_ib_device+0x16/0xf0 [hfi1] remove_one+0x55/0x1a0 [hfi1] pci_device_remove+0x36/0xa0 device_release_driver_internal+0x193/0x200 driver_detach+0x44/0x90 bus_remove_driver+0x69/0xf0 pci_unregister_driver+0x2a/0xb0 hfi1_mod_cleanup+0xc/0x3c [hfi1] __do_sys_delete_module.constprop.0+0x17a/0x2f0 ? exit_to_user_mode_prepare+0xc4/0xd0 ? syscall_trace_enter.constprop.0+0x126/0x1a0 do_syscall_64+0x5c/0x90 ? syscall_exit_to_user_mode+0x12/0x30 ? do_syscall_64+0x69/0x90 ? syscall_exit_work+0x103/0x130 ? syscall_exit_to_user_mode+0x12/0x30 ? do_syscall_64+0x69/0x90 ? exc_page_fault+0x65/0x150 entry_SYSCALL_64_after_hwframe+0x6e/0xd8 RIP: 0033:0x7ff1e643f5ab Code: 73 01 c3 48 8b 0d 75 a8 1b 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa b8 b0 00 00 00 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 45 a8 1b 00 f7 d8 64 89 01 48 RSP: 002b:00007ffec9103cc8 EFLAGS: 00000206 ORIG_RAX: 00000000000000b0 RAX: ffffffffffffffda RBX: 00005615267fdc50 RCX: 00007ff1e643f5ab RDX: 0000000000000000 RSI: 0000000000000800 RDI: 00005615267fdcb8 RBP: 00005615267fdc50 R08: 0000000000000000 R09: 0000000000000000 R10: 00007ff1e659eac0 R11: 0000000000000206 R12: 00005615267fdcb8 R13: 00000000000 ---truncated---

Distribution advisory

This page covers CVE-2023-54219 as tracked by Ubuntu, for the package linux. The fix is available in version 5.15.0-94.104; earlier versions remain affected.

How this vulnerability can be exploited

This issue can be reached over the network, attack complexity is low, an attacker needs no privileges on the target. No user interaction is required. The scope is unchanged, so the impact stays within the vulnerable component. Rated impact: confidentiality none, integrity none, availability high.

CVSS metrics in full

The score comes from this vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

  • Attack vector: Network — reachable from anywhere that can route to the service.
  • Attack complexity: Low — the attack works reliably, with no preparation.
  • Privileges required: None — an unauthenticated stranger can try it.
  • User interaction: None — nobody has to be tricked into anything.
  • Scope: Unchanged — the damage stays inside the vulnerable component.
  • Confidentiality impact: None.
  • Integrity impact: None.
  • Availability impact: High — total loss, or loss the attacker controls.

Affected software

UBUNTU-CVE-2023-54219 is recorded against 120 packages.

  • linux (fixed in 5.15.0-94.104)
  • linux-allwinner-5.19
  • linux-aws (fixed in 5.15.0-1053.58)
  • linux-aws-5.0
  • linux-aws-5.11
  • linux-aws-5.13
  • linux-aws-5.15 (fixed in 5.15.0-1053.58~20.04.1)
  • linux-aws-5.19
  • linux-aws-5.3
  • linux-aws-5.4 (fixed in 5.4.0-1116.126~18.04.1)
  • linux-aws-5.8
  • linux-aws-6.2
  • linux-aws-6.5
  • linux-aws-fips (fixed in 5.15.0-1053.58+fips1)
  • linux-azure (fixed in 5.15.0-1056.64)
  • linux-azure-5.11
  • linux-azure-5.13
  • linux-azure-5.15 (fixed in 5.15.0-1056.64~20.04.1)
  • linux-azure-5.19
  • linux-azure-5.3
  • linux-azure-5.4 (fixed in 5.4.0-1121.128~18.04.1)
  • linux-azure-5.8
  • linux-azure-6.11
  • linux-azure-6.2
Show the remaining 96 packages
  • linux-azure-6.5
  • linux-azure-edge
  • linux-azure-fde
  • linux-azure-fde-5.19
  • linux-azure-fde-6.2
  • linux-azure-fips
  • linux-bluefield
  • linux-fips (fixed in 5.15.0-94.104+fips1)
  • linux-gcp (fixed in 5.15.0-1051.59)
  • linux-gcp-5.11
  • linux-gcp-5.13
  • linux-gcp-5.15 (fixed in 5.15.0-1051.59~20.04.1)
  • linux-gcp-5.19
  • linux-gcp-5.3
  • linux-gcp-5.4 (fixed in 5.4.0-1120.129~18.04.1)
  • linux-gcp-5.8
  • linux-gcp-6.11
  • linux-gcp-6.2
  • linux-gcp-6.5
  • linux-gcp-fips (fixed in 5.15.0-1055.63+fips2)
  • linux-gke (fixed in 5.15.0-1050.55)
  • linux-gke-4.15
  • linux-gke-5.15
  • linux-gke-5.4
  • linux-gkeop (fixed in 5.15.0-1036.42)
  • linux-gkeop-5.15
  • linux-gkeop-5.4
  • linux-hwe
  • linux-hwe-5.11
  • linux-hwe-5.13
  • linux-hwe-5.15 (fixed in 5.15.0-94.104~20.04.1)
  • linux-hwe-5.19
  • linux-hwe-5.4 (fixed in 5.4.0-169.187~18.04.1)
  • linux-hwe-5.8
  • linux-hwe-6.11
  • linux-hwe-6.2
  • linux-hwe-6.5
  • linux-hwe-edge
  • linux-ibm (fixed in 5.15.0-1046.49)
  • linux-ibm-5.15 (fixed in 5.15.0-1046.49~20.04.1)
  • linux-ibm-5.4 (fixed in 5.4.0-1063.68~18.04.1)
  • linux-intel-5.13
  • linux-intel-iot-realtime (fixed in 5.15.0-1046.48)
  • linux-intel-iotg (fixed in 5.15.0-1047.53)
  • linux-intel-iotg-5.15 (fixed in 5.15.0-1048.54~20.04.1)
  • linux-iot (fixed in 5.4.0-1028.29)
  • linux-kvm (fixed in 5.15.0-1050.55)
  • linux-lowlatency (fixed in 5.15.0-94.104)
  • linux-lowlatency-hwe-5.15 (fixed in 5.15.0-94.104~20.04.1)
  • linux-lowlatency-hwe-5.19
  • linux-lowlatency-hwe-6.11
  • linux-lowlatency-hwe-6.2
  • linux-lowlatency-hwe-6.5
  • linux-nvidia (fixed in 5.15.0-1044.44)
  • linux-nvidia-6.11
  • linux-nvidia-6.2
  • linux-nvidia-6.5
  • linux-nvidia-tegra (fixed in 5.15.0-1022.22)
  • linux-nvidia-tegra-5.15 (fixed in 5.15.0-1022.22~20.04.1)
  • linux-nvidia-tegra-igx (fixed in 5.15.0-1009.9)
  • linux-oem
  • linux-oem-5.10
  • linux-oem-5.13
  • linux-oem-5.14
  • linux-oem-5.17
  • linux-oem-5.6
  • linux-oem-6.0
  • linux-oem-6.1
  • linux-oem-6.11
  • linux-oem-6.5
  • linux-oem-6.8
  • linux-oracle (fixed in 5.15.0-1051.57)
  • linux-oracle-5.0
  • linux-oracle-5.11
  • linux-oracle-5.13
  • linux-oracle-5.15 (fixed in 5.15.0-1051.57~20.04.1)
  • linux-oracle-5.3
  • linux-oracle-5.4 (fixed in 5.4.0-1115.124~18.04.1)
  • linux-oracle-5.8
  • linux-oracle-6.5
  • linux-raspi (fixed in 5.15.0-1046.49)
  • linux-raspi-5.4 (fixed in 5.4.0-1100.112~18.04.1)
  • linux-raspi-realtime
  • linux-raspi2
  • linux-realtime
  • linux-riscv
  • linux-riscv-5.11
  • linux-riscv-5.15 (fixed in 5.15.0-1049.53~20.04.2)
  • linux-riscv-5.19
  • linux-riscv-5.8
  • linux-riscv-6.14
  • linux-riscv-6.5
  • linux-starfive-5.19
  • linux-starfive-6.2
  • linux-starfive-6.5
  • linux-xilinx-zynqmp (fixed in 5.15.0-1027.31)

Timeline and source

Published on 30 December 2025 and last revised on 17 August 2026. No public exploit is currently recorded for this entry. Record sourced from OSV.

References

ubuntu.com (Report)
www.cve.org (Report)
git.kernel.org (Report)
git.kernel.org (Report)
git.kernel.org (Report)
git.kernel.org (Report)
git.kernel.org (Report)
git.kernel.org (Report)
git.kernel.org (Report)
git.kernel.org (Report)
git.kernel.org (Report)
git.kernel.org (Report)

Other advisories for this package

linux has other advisories on record. If you are patching this one, these are worth checking on the same host:

CVE-2023-54219 on other distributions

Each distribution ships its own build and its own fixed version. Pick the one you run:

Details

Severity Unknown
CVSS Score N/A
CVSS Vector CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CWE N/A
Public Exploit ✅ No
Source OSV
Published 2025-12-30
Updated 2026-08-20
Modified 2026-08-17
Fix URL N/A

Affected Packages

Software From version Fixed in
linux 5.15.0-94.104
linux-allwinner-5.19
linux-aws 5.15.0-1053.58
linux-aws-5.0
linux-aws-5.11
linux-aws-5.13
linux-aws-5.15 5.15.0-1053.58~20.04.1
linux-aws-5.19
linux-aws-5.3
linux-aws-5.4 5.4.0-1116.126~18.04.1
linux-aws-5.8
linux-aws-6.2
linux-aws-6.5
linux-aws-fips 5.15.0-1053.58+fips1
linux-azure 5.15.0-1056.64
linux-azure-5.11
linux-azure-5.13
linux-azure-5.15 5.15.0-1056.64~20.04.1
linux-azure-5.19
linux-azure-5.3
linux-azure-5.4 5.4.0-1121.128~18.04.1
linux-azure-5.8
linux-azure-6.11
linux-azure-6.2
linux-azure-6.5
linux-azure-edge
linux-azure-fde
linux-azure-fde-5.19
linux-azure-fde-6.2
linux-azure-fips
linux-bluefield
linux-fips 5.15.0-94.104+fips1
linux-gcp 5.15.0-1051.59
linux-gcp-5.11
linux-gcp-5.13
linux-gcp-5.15 5.15.0-1051.59~20.04.1
linux-gcp-5.19
linux-gcp-5.3
linux-gcp-5.4 5.4.0-1120.129~18.04.1
linux-gcp-5.8
linux-gcp-6.11
linux-gcp-6.2
linux-gcp-6.5
linux-gcp-fips 5.15.0-1055.63+fips2
linux-gke 5.15.0-1050.55
linux-gke-4.15
linux-gke-5.15
linux-gke-5.4
linux-gkeop 5.15.0-1036.42
linux-gkeop-5.15
linux-gkeop-5.4
linux-hwe
linux-hwe-5.11
linux-hwe-5.13
linux-hwe-5.15 5.15.0-94.104~20.04.1
linux-hwe-5.19
linux-hwe-5.4 5.4.0-169.187~18.04.1
linux-hwe-5.8
linux-hwe-6.11
linux-hwe-6.2
linux-hwe-6.5
linux-hwe-edge
linux-ibm 5.15.0-1046.49
linux-ibm-5.15 5.15.0-1046.49~20.04.1
linux-ibm-5.4 5.4.0-1063.68~18.04.1
linux-intel-5.13
linux-intel-iot-realtime 5.15.0-1046.48
linux-intel-iotg 5.15.0-1047.53
linux-intel-iotg-5.15 5.15.0-1048.54~20.04.1
linux-iot 5.4.0-1028.29
linux-kvm 5.15.0-1050.55
linux-lowlatency 5.15.0-94.104
linux-lowlatency-hwe-5.15 5.15.0-94.104~20.04.1
linux-lowlatency-hwe-5.19
linux-lowlatency-hwe-6.11
linux-lowlatency-hwe-6.2
linux-lowlatency-hwe-6.5
linux-nvidia 5.15.0-1044.44
linux-nvidia-6.11
linux-nvidia-6.2
linux-nvidia-6.5
linux-nvidia-tegra 5.15.0-1022.22
linux-nvidia-tegra-5.15 5.15.0-1022.22~20.04.1
linux-nvidia-tegra-igx 5.15.0-1009.9
linux-oem
linux-oem-5.10
linux-oem-5.13
linux-oem-5.14
linux-oem-5.17
linux-oem-5.6
linux-oem-6.0
linux-oem-6.1
linux-oem-6.11
linux-oem-6.5
linux-oem-6.8
linux-oracle 5.15.0-1051.57
linux-oracle-5.0
linux-oracle-5.11
linux-oracle-5.13
linux-oracle-5.15 5.15.0-1051.57~20.04.1
linux-oracle-5.3
linux-oracle-5.4 5.4.0-1115.124~18.04.1
linux-oracle-5.8
linux-oracle-6.5
linux-raspi 5.15.0-1046.49
linux-raspi-5.4 5.4.0-1100.112~18.04.1
linux-raspi-realtime
linux-raspi2
linux-realtime
linux-riscv
linux-riscv-5.11
linux-riscv-5.15 5.15.0-1049.53~20.04.2
linux-riscv-5.19
linux-riscv-5.8
linux-riscv-6.14
linux-riscv-6.5
linux-starfive-5.19
linux-starfive-6.2
linux-starfive-6.5
linux-xilinx-zynqmp 5.15.0-1027.31

References

Similar Threats

Site Security Check

Is linux part of your stack?

UBUNTU-CVE-2023-54219 is rated CVSS 7.5 High. BotEraser scans your installation against known CVE records and tells you whether this vulnerability applies to the versions you actually run.

Scan My Site Free →

No credit card required  ·  Results in minutes

ⓘ Data Notice: The information presented above has been compiled from publicly available internet sources. Boteraser aggregates this data solely for informational purposes and does not independently classify, evaluate, or endorse any findings about the vulnerabilities listed. The accuracy and completeness of this information is the sole responsibility of the original publishers. Boteraser and its operators accept no liability for any decisions made based on this data.

Browse related advisories

All advisoriesUbuntuUbuntu 2023