CVE-2023-53292

Updated: 2026-01-16 03:31:13.945946

Description:

In the Linux kernel, the following vulnerability has been resolved: blk-mq: fix NULL dereference on q->elevator in blk_mq_elv_switch_none After grabbing q->sysfs_lock, q->elevator may become NULL because of elevator switch. Fix the NULL dereference on q->elevator by checking it with lock.


Links NIST CIRCL RHEL Ubuntu

Severity

Severity Score
CVSS Version 2.x 0.0
CVSS Version 3.x MEDIUM 5.5

Status

OS name Project name Version Score Severity Status Errata Last updated

Statement

AlmaLinux 9.2 ESU kernel 5.14.0 5.5 MEDIUM Released CLSA-2025:1760546935 2025-10-15 20:24:58
CentOS 6 ELS kernel 2.6.32 5.5 MEDIUM Ignored 2025-12-18 19:39:16
CentOS 8.4 ELS kernel 4.18.0 5.5 MEDIUM Ignored 2025-12-18 19:39:14
CentOS 8.5 ELS kernel 4.18.0 5.5 MEDIUM Ignored 2025-12-18 19:39:15
Oracle Linux 6 ELS kernel 2.6.32 5.5 MEDIUM Ignored 2025-12-18 19:39:14
Ubuntu 16.04 ELS linux-hwe 4.15.0 5.5 MEDIUM Ignored 2026-01-16 09:28:26 This issue is a local-only NULL pointer dereference in a narrow blk-mq code path during block I/O sc...
Ubuntu 16.04 ELS linux 4.4.0 5.5 MEDIUM Ignored 2026-01-16 09:27:16 This issue is a local-only NULL pointer dereference in a narrow blk-mq code path during block I/O sc...
Ubuntu 18.04 ELS linux 4.15.0 5.5 MEDIUM Ignored 2026-01-16 09:27:17 This issue is a local-only NULL pointer dereference in a narrow blk-mq code path during block I/O sc...