ceph: fix deadlock or deadcode of misusing dget()
Summary
| CVE | CVE-2023-52583 |
|---|---|
| State | PUBLISHED |
| Assigner | Linux |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2024-03-06 07:15:06 UTC |
| Updated | 2026-08-15 13:17:46 UTC |
| Description | In the Linux kernel, the following vulnerability has been resolved: ceph: fix deadlock or deadcode of misusing dget() The lock order is incorrect between denty and its parent, we should always make sure that the parent get the lock first. But since this deadcode is never used and the parent dir will always be set from the callers, let's just remove it. |
Risk And Classification
Primary CVSS: v3.1 5.5 MEDIUM from [email protected]
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Problem Types: CWE-667
CVSS v3.1 Breakdown
Attack Vector
LocalAttack Complexity
LowPrivileges Required
LowUser Interaction
NoneScope
UnchangedConfidentiality
NoneIntegrity
NoneAvailability
HighCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Operating System | Linux | Linux Kernel | All | All | All | All |
Vendor Declared Affected Products
| Source | Vendor | Product | Version | Platforms |
|---|---|---|---|---|
| CNA | Linux | Linux | affected adf0d68701c7f3e50f21308c76f41e60956a6832 eb55ba8aa7fb7aad54f40fbf4d8dcdfdba0bebf6 git | Not specified |
| CNA | Linux | Linux | affected adf0d68701c7f3e50f21308c76f41e60956a6832 6ab4fd508fad942f1f1ba940492f2735e078e980 git | Not specified |
| CNA | Linux | Linux | affected adf0d68701c7f3e50f21308c76f41e60956a6832 e016e358461b89b231626fcf78c5c38e35c44fd3 git | Not specified |
| CNA | Linux | Linux | affected adf0d68701c7f3e50f21308c76f41e60956a6832 a9c15d6e8aee074fae66c04d114f20b84274fcca git | Not specified |
| CNA | Linux | Linux | affected adf0d68701c7f3e50f21308c76f41e60956a6832 7f2649c94264d00df6b6ac27161e9f4372a3450e git | Not specified |
| CNA | Linux | Linux | affected adf0d68701c7f3e50f21308c76f41e60956a6832 196b87e5c00ce021e164a5de0f0d04f4116a9160 git | Not specified |
| CNA | Linux | Linux | affected adf0d68701c7f3e50f21308c76f41e60956a6832 76cb2aa3421fee4fde706dec41b1344bc0a9ad67 git | Not specified |
| CNA | Linux | Linux | affected adf0d68701c7f3e50f21308c76f41e60956a6832 b493ad718b1f0357394d2cdecbf00a44a36fa085 git | Not specified |
| CNA | Linux | Linux | affected 4.11 | Not specified |
| CNA | Linux | Linux | unaffected 4.11 semver | Not specified |
| CNA | Linux | Linux | unaffected 4.19.307 4.19.* semver | Not specified |
| CNA | Linux | Linux | unaffected 5.4.269 5.4.* semver | Not specified |
| CNA | Linux | Linux | unaffected 5.10.210 5.10.* semver | Not specified |
| CNA | Linux | Linux | unaffected 5.15.149 5.15.* semver | Not specified |
| CNA | Linux | Linux | unaffected 6.1.77 6.1.* semver | Not specified |
| CNA | Linux | Linux | unaffected 6.6.16 6.6.* semver | Not specified |
| CNA | Linux | Linux | unaffected 6.7.4 6.7.* semver | Not specified |
| CNA | Linux | Linux | unaffected 6.8 * original_commit_for_fix | Not specified |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| lists.debian.org/debian-lts-announce/2024/06/msg00017.html | af854a3a-2127-422b-91ae-364da2661108 | lists.debian.org | Mailing List |
| git.kernel.org/stable/c/b493ad718b1f0357394d2cdecbf00a44a36fa085 | af854a3a-2127-422b-91ae-364da2661108 | git.kernel.org | Patch |
| git.kernel.org/stable/c/e016e358461b89b231626fcf78c5c38e35c44fd3 | af854a3a-2127-422b-91ae-364da2661108 | git.kernel.org | Patch |
| git.kernel.org/stable/c/7f2649c94264d00df6b6ac27161e9f4372a3450e | af854a3a-2127-422b-91ae-364da2661108 | git.kernel.org | Patch |
| git.kernel.org/stable/c/76cb2aa3421fee4fde706dec41b1344bc0a9ad67 | af854a3a-2127-422b-91ae-364da2661108 | git.kernel.org | Patch |
| git.kernel.org/stable/c/6ab4fd508fad942f1f1ba940492f2735e078e980 | af854a3a-2127-422b-91ae-364da2661108 | git.kernel.org | Patch |
| git.kernel.org/stable/c/196b87e5c00ce021e164a5de0f0d04f4116a9160 | af854a3a-2127-422b-91ae-364da2661108 | git.kernel.org | Patch |
| git.kernel.org/stable/c/eb55ba8aa7fb7aad54f40fbf4d8dcdfdba0bebf6 | af854a3a-2127-422b-91ae-364da2661108 | git.kernel.org | Patch |
| git.kernel.org/stable/c/a9c15d6e8aee074fae66c04d114f20b84274fcca | af854a3a-2127-422b-91ae-364da2661108 | git.kernel.org | Patch |
| lists.debian.org/debian-lts-announce/2024/06/msg00020.html | af854a3a-2127-422b-91ae-364da2661108 | lists.debian.org | Mailing List |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.