Linux Kernel Vulnerability in cdns3 USB Controller by Freescale
CVE-2023-53287

5.5MEDIUM

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
16 September 2025

What is CVE-2023-53287?

A flaw has been identified in the Linux kernel related to the cdns3 USB controller, where the active state of the device is incorrectly managed during the resume process. This oversight allows device scheduling during atomic operations, leading to potential kernel warnings and unstable behavior. Specifically, calls to pm_runtime_set_active must be handled outside of the spin lock to prevent disruptions to the struct cdns data structure, thus ensuring smoother operation and reliability in the kernel.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

Linux 7733f6c32e36ff9d7adadf40001039bf219b1cbe

Linux 7733f6c32e36ff9d7adadf40001039bf219b1cbe

Linux 7733f6c32e36ff9d7adadf40001039bf219b1cbe

References

CVSS V3.1

Score:
5.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.