{"id":"DEBIAN-CVE-2023-53783","details":"In the Linux kernel, the following vulnerability has been resolved:  blk-iocost: fix divide by 0 error in calc_lcoefs()  echo max of u64 to cost.model can cause divide by 0 error.    # echo 8:0 rbps=18446744073709551615 \u003e /sys/fs/cgroup/io.cost.model    divide error: 0000 [#1] PREEMPT SMP   RIP: 0010:calc_lcoefs+0x4c/0xc0   Call Trace:    \u003cTASK\u003e    ioc_refresh_params+0x2b3/0x4f0    ioc_cost_model_write+0x3cb/0x4c0    ? _copy_from_iter+0x6d/0x6c0    ? kernfs_fop_write_iter+0xfc/0x270    cgroup_file_write+0xa0/0x200    kernfs_fop_write_iter+0x17d/0x270    vfs_write+0x414/0x620    ksys_write+0x73/0x160    __x64_sys_write+0x1e/0x30    do_syscall_64+0x35/0x80    entry_SYSCALL_64_after_hwframe+0x63/0xcd  calc_lcoefs() uses the input value of cost.model in DIV_ROUND_UP_ULL, overflow would happen if bps plus IOC_PAGE_SIZE is greater than ULLONG_MAX, it can cause divide by 0 error.  Fix the problem by setting basecost","modified":"2026-09-15T08:47:42.682226216Z","published":"2025-12-09T01:16:49.547Z","upstream":["CVE-2023-53783"],"references":[{"type":"ADVISORY","url":"https://security-tracker.debian.org/tracker/CVE-2023-53783"}],"affected":[{"package":{"name":"linux","ecosystem":"Debian:12","purl":"pkg:deb/debian/linux?arch=source&distro=bookworm"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"6.1.20-1"}]}],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/osv-test-debian-osv/debian-cve-osv/DEBIAN-CVE-2023-53783.json"}},{"package":{"name":"linux","ecosystem":"Debian:13","purl":"pkg:deb/debian/linux?arch=source&distro=trixie"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"6.1.20-1"}]}],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/osv-test-debian-osv/debian-cve-osv/DEBIAN-CVE-2023-53783.json"}},{"package":{"name":"linux","ecosystem":"Debian:14","purl":"pkg:deb/debian/linux?arch=source&distro=forky"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"6.1.20-1"}]}],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/osv-test-debian-osv/debian-cve-osv/DEBIAN-CVE-2023-53783.json"}}],"schema_version":"1.9.0"}