CVE-2023-54309

Linux Kernel - Race Condition in /dev/vtpmx Creation

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: tpm: tpm_vtpm_proxy: fix a race condition in /dev/vtpmx creation /dev/vtpmx is made visible before 'workqueue' is initialized, which can lead to a memory corruption in the worst case scenario. Address this by initializing 'workqueue' as the very first step of the driver initialization.

Scores

EPSS 0.0018
EPSS Percentile 8.2%

Details

Status published
Products (25)
linux/Kernel 4.15.0 - 4.19.291linux
linux/Kernel 4.20.0 - 5.4.251linux
linux/Kernel 4.8.0 - 4.14.322linux
linux/Kernel 5.11.0 - 5.15.121linux
linux/Kernel 5.16.0 - 6.1.40linux
linux/Kernel 5.5.0 - 5.10.188linux
linux/Kernel 6.2.0 - 6.4.5linux
Linux/Linux < 4.8
Linux/Linux 4.14.322 - 4.14.*
Linux/Linux 4.19.291 - 4.19.*
... and 15 more
Published Dec 30, 2025
Tracked Since Feb 18, 2026