CVE-2023-53488

MEDIUM

Linux Kernel 4.3-4.14.323 - Use-After-Free in IB/hfi1 Hotplug Remove

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: IB/hfi1: Fix possible panic during hotplug remove During hotplug remove it is possible that the update counters work might be pending, and may run after memory has been freed. Cancel the update counters work before freeing memory.

Scores

CVSS v3 5.5
EPSS 0.0015
EPSS Percentile 4.4%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Details

Status published
Products (27)
linux/Kernel 4.15.0 - 4.19.292linux
linux/Kernel 4.20.0 - 5.4.254linux
linux/Kernel 4.3.0 - 4.14.323linux
linux/Kernel 5.11.0 - 5.15.127linux
linux/Kernel 5.16.0 - 6.1.46linux
linux/Kernel 5.5.0 - 5.10.191linux
linux/Kernel 6.2.0 - 6.4.11linux
Linux/Linux < 4.3
Linux/Linux 4.14.323 - 4.14.*
Linux/Linux 4.19.292 - 4.19.*
... and 17 more
Published Oct 01, 2025
Tracked Since Feb 18, 2026