
Cloud Vulnerability DB
A community-led vulnerabilities database
A vulnerability has been identified in the Linux kernel related to the RCU (Read-Copy-Update) subsystem, specifically in the rcuscale module. The issue was discovered and disclosed on September 16, 2025, and is tracked as CVE-2023-53291. The vulnerability affects the kfreescalethread functionality in the Linux kernel's RCU implementation (NVD).
The vulnerability occurs when the kfreescalethread thread(s) continue running after unloading the rcuscale module. This leads to a page fault error when attempting to access memory that is no longer valid. The issue manifests specifically when running the 'kfreercutest' test case, resulting in a supervisor instruction fetch kernel mode page fault. The error occurs at address ffffffffc0601a87 with error code 0x0010, indicating a not-present page (NVD).
When exploited, this vulnerability can cause a kernel crash due to the inability to handle page faults properly. This results in system instability and potential denial of service conditions as evidenced by the reported kernel oops message (NVD).
The issue has been resolved by invoking kfreescalecleanup() from rcuscalecleanup() when removing the rcuscale module. This ensures proper cleanup of kfreescalethread threads before module unload (NVD).
Source: This report was generated using AI
Free Vulnerability Assessment
Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.
Get a personalized demo
"Best User Experience I have ever seen, provides full visibility to cloud workloads."
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
"We know that if Wiz identifies something as critical, it actually is."