Security Flaw in Linux Kernel Affecting Audio Stream Management
CVE-2023-53866

Currently unrated

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
9 December 2025

What is CVE-2023-53866?

A vulnerability exists in the Linux kernel that can lead to a kernel panic when the 'panic_on_warn' flag is set and a compression stream is initiated. This issue arises due to improper management of the pcm_mutex in the audio subsystem, specifically within functions that handle connection and disconnection of audio streams. Without appropriate locking mechanisms in place, certain operations fail to maintain consistency, resulting in system instability. This flaw has been identified and addressed to prevent potential crashes in environments relying on this audio functionality.

Affected Version(s)

Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 9576b7ccc20365d27c26c494651c89360a85bbdc

Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 9a9942cbdb7c3f41452f7bc4a9ff9f0b45eb3651

Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 37a3eb6054d17676ce2a0bb5dd1fbf7733ecfa7d

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.