CVE-2023-54309

Updated on 30 Dec 2025

Severity

Awaiting Analysis

Details

Overview

About vulnerability

In the Linux kernel, the following vulnerability has been resolved:

tpm: tpm_vtpm_proxy: fix a race condition in /dev/vtpmx creation

/dev/vtpmx is made visible before ‘workqueue’ is initialized, which can lead to a memory corruption in the worst case scenario.

Address this by initializing ‘workqueue’ as the very first step of the driver initialization.

Details

Affected product:
AlmaLinux 9.2 ESU , TuxCare 9.6 ESU
Affected packages:
kernel @ 5.14.0 (+1 more)

In the Linux kernel, the following vulnerability has been resolved:

tpm: tpm_vtpm_proxy: fix a race condition in /dev/vtpmx creation

/dev/vtpmx is made visible before ‘workqueue’ is initialized, which can lead to a memory corruption in the worst case scenario.

Address this by initializing ‘workqueue’ as the very first step of the driver initialization.

Fixes