{"id":"DEBIAN-CVE-2023-53791","details":"In the Linux kernel, the following vulnerability has been resolved:  md: fix warning for holder mismatch from export_rdev()  Commit a1d767191096 (\"md: use mddev-\u003eexternal to select holder in export_rdev()\") fix the problem that 'claim_rdev' is used for blkdev_get_by_dev() while 'rdev' is used for blkdev_put().  However, if mddev-\u003eexternal is changed from 0 to 1, then 'rdev' is used for blkdev_get_by_dev() while 'claim_rdev' is used for blkdev_put(). And this problem can be reporduced reliably by following:  New file: mdadm/tests/23rdev-lifetime  devname=${dev0##*/} devt=`cat /sys/block/$devname/dev` pid=\"\" runtime=2  clean_up_test() {         pill -9 $pid         echo clear \u003e /sys/block/md0/md/array_state }  trap 'clean_up_test' EXIT  add_by_sysfs() {         while true; do                 echo $devt \u003e /sys/block/md0/md/new_dev         done }  remove_by_sysfs(){         while true; do                 echo remove \u003e /sys/block/md0/md/dev-${devname}/state         done }  echo md0 \u003e /sys/module/md_mod/parameters/new_array || die \"create md0 failed\"  add_by_sysfs & pid=\"$pid $!\"  remove_by_sysfs & pid=\"$pid $!\"  sleep $runtime exit 0  Test cmd:  ./test --save-logs --logdir=/tmp/ --keep-going --dev=loop --tests=23rdev-lifetime  Test result:  ------------[ cut here ]------------ WARNING: CPU: 0 PID: 960 at block/bdev.c:618 blkdev_put+0x27c/0x330 Modules linked in: multipath md_mod loop CPU: 0 PID: 960 Comm: test Not tainted 6.5.0-rc2-00121-g01e55c376936-dirty #50 RIP: 0010:blkdev_put+0x27c/0x330 Call Trace:  \u003cTASK\u003e  export_rdev.isra.23+0x50/0xa0 [md_mod]  mddev_unlock+0x19d/0x300 [md_mod]  rdev_attr_store+0xec/0x190 [md_mod]  sysfs_kf_write+0x52/0x70  kernfs_fop_write_iter+0x19a/0x2a0  vfs_write+0x3b5/0x770  ksys_write+0x74/0x150  __x64_sys_write+0x22/0x30  do_syscall_64+0x40/0x90  entry_SYSCALL_64_after_hwframe+0x63/0xcd  Fix the problem by recording if 'rdev' is used as holder.","modified":"2026-09-15T08:47:26.512906382Z","published":"2025-12-09T01:16:50.570Z","upstream":["CVE-2023-53791"],"references":[{"type":"ADVISORY","url":"https://security-tracker.debian.org/tracker/CVE-2023-53791"}],"affected":[{"package":{"name":"linux","ecosystem":"Debian:13","purl":"pkg:deb/debian/linux?arch=source&distro=trixie"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"6.5.6-1"}]}],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/osv-test-debian-osv/debian-cve-osv/DEBIAN-CVE-2023-53791.json"}},{"package":{"name":"linux","ecosystem":"Debian:14","purl":"pkg:deb/debian/linux?arch=source&distro=forky"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"6.5.6-1"}]}],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/osv-test-debian-osv/debian-cve-osv/DEBIAN-CVE-2023-53791.json"}}],"schema_version":"1.9.0"}