CVE-2023-54278

EUVD-2023-60526
In the Linux kernel, the following vulnerability has been resolved:

s390/vmem: split pages when debug pagealloc is enabled

Since commit bb1520d581a3 ("s390/mm: start kernel with DAT enabled")
the kernel crashes early during boot when debug pagealloc is enabled:

mem auto-init: stack:off, heap alloc:off, heap free:off
addressing exception: 0005 ilc:2 [#1] SMP DEBUG_PAGEALLOC
Modules linked in:
CPU: 0 PID: 0 Comm: swapper Not tainted 6.5.0-rc3-09759-gc5666c912155 #630
[..]
Krnl Code: 00000000001325f6: ec5600248064 cgrj %r5,%r6,8,000000000013263e
           00000000001325fc: eb880002000c srlg %r8,%r8,2
          #0000000000132602: b2210051     ipte %r5,%r1,%r0,0
          >0000000000132606: b90400d1     lgr %r13,%r1
           000000000013260a: 41605008     la %r6,8(%r5)
           000000000013260e: a7db1000     aghi %r13,4096
           0000000000132612: b221006d     ipte %r6,%r13,%r0,0
           0000000000132616: e3d0d0000171 lay %r13,4096(%r13)

Call Trace:
 __kernel_map_pages+0x14e/0x320
 __free_pages_ok+0x23a/0x5a8)
 free_low_memory_core_early+0x214/0x2c8
 memblock_free_all+0x28/0x58
 mem_init+0xb6/0x228
 mm_core_init+0xb6/0x3b0
 start_kernel+0x1d2/0x5a8
 startup_continue+0x36/0x40
Kernel panic - not syncing: Fatal exception: panic_on_oops

This is caused by using large mappings on machines with EDAT1/EDAT2. Add
the code to split the mappings into 4k pages if debug pagealloc is enabled
by CONFIG_DEBUG_PAGEALLOC_ENABLE_DEFAULT or the debug_pagealloc kernel
command line option.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
UNKNOWN
---
Awaiting analysis
This vulnerability is currently awaiting analysis.
Base Score
CVSS 3.x
EPSS Score
Percentile: 10%
Debian logo
Debian Releases
Debian Product
Codename
linux
bookworm
6.1.148-1
not-affected
bookworm (security)
6.1.158-1
fixed
bullseye
5.10.223-1
not-affected
bullseye (security)
5.10.247-1
fixed
forky
6.17.13-1
fixed
sid
6.17.13-1
fixed
trixie
6.12.57-1
fixed
trixie (security)
6.12.48-1
fixed
openSUSE logo
openSUSE / SLES Releases
openSUSE Product
Release
cluster-md-kmp-default
suse enterprise server 15 SP6
6.4.0-150600.23.84.1
fixed
dlm-kmp-default
suse enterprise server 15 SP6
6.4.0-150600.23.84.1
fixed
gfs2-kmp-default
suse enterprise server 15 SP6
6.4.0-150600.23.84.1
fixed
kernel-64kb
suse enterprise desktop 15 SP7
6.4.0-150700.53.28.1
fixed
suse enterprise sap 15 SP7
6.4.0-150700.53.28.1
fixed
suse enterprise server 15 SP6
6.4.0-150600.23.84.1
fixed
suse enterprise server 15 SP7
6.4.0-150700.53.28.1
fixed
kernel-azure
suse enterprise sap 15 SP7
6.4.0-150700.20.24.1
fixed
suse enterprise server 15 SP7
6.4.0-150700.20.24.1
fixed
kernel-default
suse enterprise desktop 15 SP7
6.4.0-150700.53.28.1
fixed
suse enterprise sap 15 SP7
6.4.0-150700.53.28.1
fixed
suse enterprise server 15 SP6
6.4.0-150600.23.84.1
fixed
suse enterprise server 15 SP7
6.4.0-150700.53.28.1
fixed
kernel-default-base
suse enterprise desktop 15 SP7
6.4.0-150700.53.28.1.150700.17.19.1
fixed
suse enterprise sap 15 SP7
6.4.0-150700.53.28.1.150700.17.19.1
fixed
suse enterprise server 15 SP6
6.4.0-150600.23.84.1.150600.12.38.1
fixed
suse enterprise server 15 SP7
6.4.0-150700.53.28.1.150700.17.19.1
fixed
kernel-docs
suse enterprise desktop 15 SP7
6.4.0-150700.53.28.1
fixed
suse enterprise sap 15 SP7
6.4.0-150700.53.28.1
fixed
suse enterprise server 15 SP6
6.4.0-150600.23.84.1
fixed
suse enterprise server 15 SP7
6.4.0-150700.53.28.1
fixed
kernel-macros
suse enterprise desktop 15 SP7
6.4.0-150700.53.28.1
fixed
suse enterprise sap 15 SP7
6.4.0-150700.53.28.1
fixed
suse enterprise server 15 SP6
6.4.0-150600.23.84.1
fixed
suse enterprise server 15 SP7
6.4.0-150700.53.28.1
fixed
kernel-obs-build
suse enterprise desktop 15 SP7
6.4.0-150700.53.28.1
fixed
suse enterprise sap 15 SP7
6.4.0-150700.53.28.1
fixed
suse enterprise server 15 SP6
6.4.0-150600.23.84.1
fixed
suse enterprise server 15 SP7
6.4.0-150700.53.28.1
fixed
kernel-source
suse enterprise desktop 15 SP7
6.4.0-150700.53.28.1
fixed
suse enterprise sap 15 SP7
6.4.0-150700.53.28.1
fixed
suse enterprise server 15 SP6
6.4.0-150600.23.84.1
fixed
suse enterprise server 15 SP7
6.4.0-150700.53.28.1
fixed
kernel-source-azure
suse enterprise sap 15 SP7
6.4.0-150700.20.24.1
fixed
suse enterprise server 15 SP7
6.4.0-150700.20.24.1
fixed
kernel-syms
suse enterprise desktop 15 SP7
6.4.0-150700.53.28.1
fixed
suse enterprise sap 15 SP7
6.4.0-150700.53.28.1
fixed
suse enterprise server 15 SP6
6.4.0-150600.23.84.1
fixed
suse enterprise server 15 SP7
6.4.0-150700.53.28.1
fixed
kernel-syms-azure
suse enterprise sap 15 SP7
6.4.0-150700.20.24.1
fixed
suse enterprise server 15 SP7
6.4.0-150700.20.24.1
fixed
kernel-zfcpdump
suse enterprise desktop 15 SP7
6.4.0-150700.53.28.1
fixed
suse enterprise sap 15 SP7
6.4.0-150700.53.28.1
fixed
suse enterprise server 15 SP6
6.4.0-150600.23.84.1
fixed
suse enterprise server 15 SP7
6.4.0-150700.53.28.1
fixed
ocfs2-kmp-default
suse enterprise server 15 SP6
6.4.0-150600.23.84.1
fixed
reiserfs-kmp-default
suse enterprise server 15 SP6
6.4.0-150600.23.84.1
fixed
Red Hat logo
Red Hat Enterprise Linux Releases
Red Hat Product
Release
kernel
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-64k
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-64k-core
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-64k-debug
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-64k-debug-core
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-64k-debug-devel
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-64k-debug-devel-matched
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-64k-debug-modules
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-64k-debug-modules-core
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-64k-debug-modules-extra
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-64k-devel
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-64k-devel-matched
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-64k-modules
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-64k-modules-core
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-64k-modules-extra
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-abi-stablelists
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-core
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-debug
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-debug-core
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-debug-devel
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-debug-devel-matched
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-debug-modules
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-debug-modules-core
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-debug-modules-extra
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-debug-uki-virt
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-devel
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-devel-matched
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-doc
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-modules
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-modules-core
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-modules-extra
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-rt
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-rt-64k
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-rt-64k-core
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-rt-64k-debug
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-rt-64k-debug-core
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-rt-64k-debug-devel
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-rt-64k-debug-modules
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-rt-64k-debug-modules-core
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-rt-64k-debug-modules-extra
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-rt-64k-devel
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-rt-64k-modules
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-rt-64k-modules-core
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-rt-64k-modules-extra
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-rt-core
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-rt-debug
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-rt-debug-core
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-rt-debug-devel
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-rt-debug-kvm
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-rt-debug-modules
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-rt-debug-modules-core
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-rt-debug-modules-extra
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-rt-devel
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-rt-kvm
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-rt-modules
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-rt-modules-core
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-rt-modules-extra
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-tools
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-tools-libs
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-tools-libs-devel
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-uki-virt
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-uki-virt-addons
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-zfcpdump
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-zfcpdump-core
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-zfcpdump-devel
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-zfcpdump-devel-matched
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-zfcpdump-modules
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-zfcpdump-modules-core
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
kernel-zfcpdump-modules-extra
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
libperf
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
perf
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
python3-perf
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
rtla
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed
rv
RHEL 9
0:5.14.0-570.12.1.el9_6
fixed