Bug 2212938 (CVE-2023-31082) - CVE-2023-31082 kernel: sleeping function called from an invalid context in gsmld_write
Summary: CVE-2023-31082 kernel: sleeping function called from an invalid context in gs...
Keywords:
Status: NEW
Alias: CVE-2023-31082
Product: Security Response
Classification: Other
Component: vulnerability
Version: unspecified
Hardware: All
OS: Linux
medium
medium
Target Milestone: ---
Assignee: Nobody
QA Contact:
URL:
Whiteboard:
Depends On: 2212939 2212940 2212941 2212942 2212943
Blocks: 2189448
TreeView+ depends on / blocked
 
Reported: 2023-06-06 16:28 UTC by Alex
Modified: 2024-01-03 14:57 UTC (History)
46 users (show)

Fixed In Version:
Doc Type: If docs needed, set a value
Doc Text:
A flaw was found when calling sleeping functions from the atomic context in the Linux kernel’s GSM MUX protocol. This flaw allows a local user to crash the system.
Clone Of:
Environment:
Last Closed:
Embargoed:


Attachments (Terms of Use)

Description Alex 2023-06-06 16:28:36 UTC
A flaw in the Linux Kernel found in drivers/tty/n_gsm.c. If sleeping function called from an invalid context in gsmld_write, this can lead to kernel crash.

Reference:
https://lore.kernel.org/all/CA+UBctCZok5FSQ=LPRA+A-jocW=L8FuMVZ_7MNqhh483P5yN8A@mail.gmail.com/

Patch not available yet, and previous attempt to fix was:
https://lore.kernel.org/all/20221205190806.179857803@linuxfoundation.org/

Comment 1 Alex 2023-06-06 16:29:07 UTC
Created kernel tracking bugs for this issue:

Affects: fedora-all [bug 2212939]


Note You need to log in before you can comment on or make changes to this bug.