{"id":"DEBIAN-CVE-2023-54113","details":"In the Linux kernel, the following vulnerability has been resolved:  rcu: dump vmalloc memory info safely  Currently, for double invoke call_rcu(), will dump rcu_head objects memory info, if the objects is not allocated from the slab allocator, the vmalloc_dump_obj() will be invoke and the vmap_area_lock spinlock need to be held, since the call_rcu() can be invoked in interrupt context, therefore, there is a possibility of spinlock deadlock scenarios.  And in Preempt-RT kernel, the rcutorture test also trigger the following lockdep warning:  BUG: sleeping function called from invalid context at kernel/locking/spinlock_rt.c:48 in_atomic(): 1, irqs_disabled(): 1, non_block: 0, pid: 1, name: swapper/0 preempt_count: 1, expected: 0 RCU nest depth: 1, expected: 1 3 locks held by swapper/0/1:  #0: ffffffffb534ee80 (fullstop_mutex){+.+.}-{4:4}, at: torture_init_begin+0x24/0xa0  #1: ffffffffb5307940 (rcu_read_lock){....}-{1:3}, at: rcu_torture_init+0x1ec7/0x2370  #2: ffffffffb536af40 (vmap_area_lock){+.+.}-{3:3}, at: find_vmap_area+0x1f/0x70 irq event stamp: 565512 hardirqs last  enabled at (565511): [\u003cffffffffb379b138\u003e] __call_rcu_common+0x218/0x940 hardirqs last disabled at (565512): [\u003cffffffffb5804262\u003e] rcu_torture_init+0x20b2/0x2370 softirqs last  enabled at (399112): [\u003cffffffffb36b2586\u003e] __local_bh_enable_ip+0x126/0x170 softirqs last disabled at (399106): [\u003cffffffffb43fef59\u003e] inet_register_protosw+0x9/0x1d0 Preemption disabled at: [\u003cffffffffb58040c3\u003e] rcu_torture_init+0x1f13/0x2370 CPU: 0 PID: 1 Comm: swapper/0 Tainted: G        W          6.5.0-rc4-rt2-yocto-preempt-rt+ #15 Hardware name: QEMU Standard PC (Q35 + ICH9, 2009), BIOS rel-1.16.2-0-gea1b7a073390-prebuilt.qemu.org 04/01/2014 Call Trace:  \u003cTASK\u003e  dump_stack_lvl+0x68/0xb0  dump_stack+0x14/0x20  __might_resched+0x1aa/0x280  ? __pfx_rcu_torture_err_cb+0x10/0x10  rt_spin_lock+0x53/0x130  ? find_vmap_area+0x1f/0x70  find_vmap_area+0x1f/0x70  vmalloc_dump_obj+0x20/0x60  mem_dump_obj+0x22/0x90  __call_rcu_common+0x5bf/0x940  ? debug_smp_processor_id+0x1b/0x30  call_rcu_hurry+0x14/0x20  rcu_torture_init+0x1f82/0x2370  ? __pfx_rcu_torture_leak_cb+0x10/0x10  ? __pfx_rcu_torture_leak_cb+0x10/0x10  ? __pfx_rcu_torture_init+0x10/0x10  do_one_initcall+0x6c/0x300  ? debug_smp_processor_id+0x1b/0x30  kernel_init_freeable+0x2b9/0x540  ? __pfx_kernel_init+0x10/0x10  kernel_init+0x1f/0x150  ret_from_fork+0x40/0x50  ? __pfx_kernel_init+0x10/0x10  ret_from_fork_asm+0x1b/0x30  \u003c/TASK\u003e  The previous patch fixes this by using the deadlock-safe best-effort version of find_vm_area.  However, in case of failure print the fact that the pointer was a vmalloc pointer so that we print at least something.","modified":"2026-09-15T08:47:35.457126609Z","published":"2025-12-24T13:16:13.213Z","upstream":["CVE-2023-54113"],"references":[{"type":"ADVISORY","url":"https://security-tracker.debian.org/tracker/CVE-2023-54113"}],"affected":[{"package":{"name":"linux","ecosystem":"Debian:12","purl":"pkg:deb/debian/linux?arch=source&distro=bookworm"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"6.1.55-1"}]}],"versions":["6.1.27-1","6.1.37-1","6.1.38-1","6.1.38-2","6.1.38-2~bpo11+1","6.1.38-3","6.1.38-4","6.1.38-4~bpo11+1","6.1.52-1","6.1.55-1~bpo11+1"],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/osv-test-debian-osv/debian-cve-osv/DEBIAN-CVE-2023-54113.json"}},{"package":{"name":"linux","ecosystem":"Debian:13","purl":"pkg:deb/debian/linux?arch=source&distro=trixie"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"6.5.3-1"}]}],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/osv-test-debian-osv/debian-cve-osv/DEBIAN-CVE-2023-54113.json"}},{"package":{"name":"linux","ecosystem":"Debian:14","purl":"pkg:deb/debian/linux?arch=source&distro=forky"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"6.5.3-1"}]}],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/osv-test-debian-osv/debian-cve-osv/DEBIAN-CVE-2023-54113.json"}}],"schema_version":"1.9.0"}