SB20251230272 - Reachable assertion in Linux kernel sunrpc
Published: December 30, 2025 Updated: December 30, 2025
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 security vulnerability.
1) Reachable assertion (CVE-ID: CVE-2023-54269)
The vulnerability allows a local user to perform a denial of service (DoS) attack.
The vulnerability exists due to reachable assertion within the svc_defer() function in net/sunrpc/svc_xprt.c. A local user can perform a denial of service (DoS) attack.
Remediation
Install update from vendor's website.
References
- https://git.kernel.org/stable/c/7851771789e87108a92697194105ef0c9307dc5e
- https://git.kernel.org/stable/c/e0c648627322a4c7e018e5c7f837c3c03e297dbb
- https://git.kernel.org/stable/c/eb8d3a2c809abd73ab0a060fe971d6b9019aa3c1
- https://git.kernel.org/stable/c/fd86534872f445f54dc01e7db001e25eadf063a8
- https://mirrors.edge.kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.1.30