Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2023-54007

11
FAUCET Score

CVE-2023-54007 is a race condition vulnerability in the Linux kernel's vmci_host_poll() function, affecting the VMware VMCI (Virtual Machine Communication Interface) driver. This flaw can lead to a General Protection Fault (GPF) due to a null-pointer dereference. The vulnerability arises from non-atomic reads of context initialization status, allowing vmci_host_poll() to attempt dereferencing an uninitialized context. The severity of this vulnerability is moderate. It requires a race condition to be triggered, which can increase attack complexity. The primary impact is a denial of service (system crash) due to the GPF, which could disrupt virtualized environments. There is no indication of active exploitation for CVE-2023-54007. No public exploit code or Metasploit modules are available, and there is minimal community discussion or media coverage surrounding this CVE.

Impacted Technologies

VendorProductVersion(s)CPE
LinuxLinux
3.9CNA affecteddefault affected
LinuxLinux
>= 8bf503991f87e32ea42a7bd69b79ba084fddc5d7, < 2053e93ac15519ed1f1fe6eba79a33a4963be4a3, >= 8bf503991f87e32ea42a7bd69b79ba084fddc5d7, < 67e35824f861a05b44b19d38e16a83f653bd9d92, >= 8bf503991f87e32ea42a7bd69b79ba084fddc5d7, < 770d30b1355c6c8879973dd054fca9168def182c, >= 8bf503991f87e32ea42a7bd69b79ba084fddc5d7, < 85b4aa4eb2e3a0da111fd0a1cdbf00f986ac6b6b, >= 8bf503991f87e32ea42a7bd69b79ba084fddc5d7, < ab64bd32b9fac27ff4737d63711b9db5e5462448, >= 8bf503991f87e32ea42a7bd69b79ba084fddc5d7, < ae13381da5ff0e8e084c0323c3cc0a945e43e9c7, >= 8bf503991f87e32ea42a7bd69b79ba084fddc5d7, < ca0f4ad2b7a36c799213ef0a213eb977a51e03dc, >= 8bf503991f87e32ea42a7bd69b79ba084fddc5d7, < d22b2a35729cb1de311cb650cd67518a24e13fc9CNA affecteddefault unaffected

CVSS Data

CVSS data has not been published for this CVE.

Exploit Intelligence

EPSS Score
0.19%
Probability of exploitation in next 30 days
EPSS Percentile
9.2%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15

Social Chatter

Media Mentions

No media coverage found for this CVE.

Remediation

Vendor Patches (6)

redhatvendor investigatingvia redhat_api
Product: Red Hat Enterprise Linux 7Fixed in: kernel
redhatvendor investigatingvia redhat_api
Product: Red Hat Enterprise Linux 7Fixed in: kernel-rt
redhatvendor investigatingvia redhat_api
Product: Red Hat Enterprise Linux 8Fixed in: kernel
redhatvendor investigatingvia redhat_api
Product: Red Hat Enterprise Linux 8Fixed in: kernel-rt
redhatvendor investigatingvia redhat_api
Product: Red Hat Enterprise Linux 9Fixed in: kernel
redhatvendor investigatingvia redhat_api
Product: Red Hat Enterprise Linux 9Fixed in: kernel-rt

Vendor Advisories (1)

redhatCVE-2023-54007Low

kernel: vmci_host: fix a race condition in vmci_host_poll() causing GPF

Dec 24, 2025

References

git.kernel.org / stable/c/2053e93ac15519ed1f1fe6eba79a33a4963be4a3
git.kernel.org / stable/c/67e35824f861a05b44b19d38e16a83f653bd9d92
git.kernel.org / stable/c/770d30b1355c6c8879973dd054fca9168def182c
git.kernel.org / stable/c/85b4aa4eb2e3a0da111fd0a1cdbf00f986ac6b6b
git.kernel.org / stable/c/ab64bd32b9fac27ff4737d63711b9db5e5462448
git.kernel.org / stable/c/ae13381da5ff0e8e084c0323c3cc0a945e43e9c7
git.kernel.org / stable/c/ca0f4ad2b7a36c799213ef0a213eb977a51e03dc
git.kernel.org / stable/c/d22b2a35729cb1de311cb650cd67518a24e13fc9