Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2023-52831

17
FAUCET Score

CVE-2023-52831 is a vulnerability in the Linux kernel related to CPU hotplug functionality. It allows a local attacker to cause a denial of service (system crash) by attempting to offline the last non-isolated CPU on systems configured with "isolcpus=". This vulnerability has a CVSS score of 5.5 (Medium) due to its local attack vector and high impact on availability, with low attack complexity and required privileges. There is no evidence of active exploitation, public exploit code, or Metasploit/Nuclei modules, though it has received some community discussion and media coverage.

Impacted Technologies

VendorProductVersion(s)CPE
>= 6.1.53, < 6.1.64CPE match
cpe:2.3:a:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 6.4.16, < 6.5CPE match
cpe:2.3:a:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 6.5.3, < 6.5.13CPE match
cpe:2.3:a:linux:linux_kernel:*:*:*:*:*:*:*:*
< 6.1.64CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 6.2, < 6.5.13CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

5.5MEDIUM

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
HIGH
Exploitability Score
1.8
Impact Score
3.6
CvssVersion
3.1

Exploit Intelligence

EPSS Score
0.24%
Probability of exploitation in next 30 days
EPSS Percentile
15.2%
Percentile rank of EPSS score among Peer Group
As of 2026-07-28
Model: v2026.06.15
This CVE's current EPSS score of 0.0024 is in the 66th percentile among its peer group of 15,940 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.

Media Mentions

The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (4)

redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 9Fixed in: kernel-0:5.14.0-503.11.1.el9_5
View patch
redhatno patchvia redhat_api
Product: Red Hat Enterprise Linux 9Fixed in: kernel-rt
redhatend of lifevia redhat_api
Product: Red Hat Enterprise Linux 8Fixed in: kernel
redhatend of lifevia redhat_api
Product: Red Hat Enterprise Linux 8Fixed in: kernel-rt

Vendor Advisories (2)

redhatCVE-2023-52831Moderate

kernel: cpu/hotplug: Don't offline the last non-isolated CPU

May 21, 2024
microsoft2024-May/CVE-2023-52831Moderate

cpu/hotplug: Don't offline the last non-isolated CPU

May 14, 2024

References

git.kernel.org / stable/c/3073f6df783d9d75f7f69f73e16c7ef85d6cfb63
Patch
git.kernel.org / stable/c/335a47ed71e332c82339d1aec0c7f6caccfcda13
Patch
git.kernel.org / stable/c/3410b702354702b500bde10e3cc1f9db8731d908
Patch
git.kernel.org / stable/c/38685e2a0476127db766f81b1c06019ddc4c9ffa
Patch