CVE-2023-54046

Source
https://cve.org/CVERecord?id=CVE-2023-54046
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2023-54046.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2023-54046
Downstream
Related
Published
2025-12-24T12:22:57.416Z
Modified
2026-03-20T12:33:25.165837Z
Summary
crypto: essiv - Handle EBUSY correctly
Details

In the Linux kernel, the following vulnerability has been resolved:

crypto: essiv - Handle EBUSY correctly

As it is essiv only handles the special return value of EINPROGERSS, which means that in all other cases it will free data related to the request.

However, as the caller of essiv may specify MAY_BACKLOG, we also need to expect EBUSY and treat it in the same way. Otherwise backlogged requests will trigger a use-after-free.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/54xxx/CVE-2023-54046.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
be1eb7f78aa8fbe34779c56c266ccd0364604e71
Fixed
c61e7d182ee3f3f5ecf18a2964e303d49c539b52
Fixed
796e02cca30a67322161f0745e5ce994bbe75605
Fixed
840a1d3b77c1b062bd62b4733969a5b1efc274ce
Fixed
a006aa3eedb8bfd6fe317c3cfe9c86ffe76b2385
Fixed
69c67d451fc19d88e54f7d97e8e7c093e08357e1
Fixed
b5a772adf45a32c68bef28e60621f12617161556

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2023-54046.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
5.4.0
Fixed
5.4.235
Type
ECOSYSTEM
Events
Introduced
5.5.0
Fixed
5.10.173
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.99
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.16
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.2.3

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2023-54046.json"