Security Flaw in Linux Kernel Affecting Audio Stream Management
CVE-2023-53866
What is CVE-2023-53866?
A vulnerability exists in the Linux kernel that can lead to a kernel panic when the 'panic_on_warn' flag is set and a compression stream is initiated. This issue arises due to improper management of the pcm_mutex in the audio subsystem, specifically within functions that handle connection and disconnection of audio streams. Without appropriate locking mechanisms in place, certain operations fail to maintain consistency, resulting in system instability. This flaw has been identified and addressed to prevent potential crashes in environments relying on this audio functionality.
Affected Version(s)
Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 9576b7ccc20365d27c26c494651c89360a85bbdc
Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 9a9942cbdb7c3f41452f7bc4a9ff9f0b45eb3651
Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 37a3eb6054d17676ce2a0bb5dd1fbf7733ecfa7d