md/raid10: prevent soft lockup while flush writes
Published Sep 15, 2025
5.5
MEDIUMCVSS 3.1
EPSS 0.12%
Description
Currently, there is no limit for raid1/raid10 plugged bio. While flushing writes, raid1 has cond_resched() while raid10 doesn't, and too many writes can cause soft lockup.
Follow up soft lockup can be triggered easily with writeback test for raid10 with ramdisks:
watchdog: BUG: soft lockup - CPU#10 stuck for 27s! [md0_raid10:1293] Call Trace: <TASK> call_rcu+0x16/0x20 put_object+0x41/0x80 __delete_object+0x50/0x90 delete_object_full+0x2b/0x40 kmemleak_free+0x46/0xa0 slab_free_freelist_hook.constprop.0+0xed/0x1a0 kmem_cache_free+0xfd/0x300 mempool_free_slab+0x1f/0x30 mempool_free+0x3a/0x100 bio_free+0x59/0x80 bio_put+0xcf/0x2c0 free_r10bio+0xbf/0xf0 raid_end_bio_io+0x78/0xb0 one_write_done+0x8a/0xa0 raid10_end_write_request+0x1b4/0x430 bio_endio+0x175/0x320 brd_submit_bio+0x3b9/0x9b7 [brd] __submit_bio+0x69/0xe0 submit_bio_noacct_nocheck+0x1e6/0x5a0 submit_bio_noacct+0x38c/0x7e0 flush_pending_writes+0xf0/0x240 raid10d+0xac/0x1ed0
Fix the problem by adding cond_resched() to raid10 like what raid1 did.
Note that unlimited plugged bio still need to be optimized, for example, in the case of lots of dirty pages writeback, this will take lots of memory and io will spend a long time in plug, hence io latency is bad.
Affected products
-
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version
-
- Version 2.6.16StatusaffectedConstraints-
- Version 0StatusunaffectedConstraints<2.6.16
- Version 4.14.322StatusunaffectedConstraints<=4.14.*
- Version 4.19.291StatusunaffectedConstraints<=4.19.*
- Version 5.10.188StatusunaffectedConstraints<=5.10.*
- Version 5.15.150StatusunaffectedConstraints<=5.15.*
- Version 5.4.251StatusunaffectedConstraints<=5.4.*
- Version 6.1.83StatusunaffectedConstraints<=6.1.*
- Version 6.4.7StatusunaffectedConstraints<=6.4.*
- Version 6.5StatusunaffectedConstraints<=*
- Version
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
| Vendor | Product | Default status | Versions | |||||||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| Linux | Linux | unaffected |
| |||||||||||||||||||||||||||||||||
| Linux | Linux | affected |
|
- < 4.14.322
- ≥ 4.15 · < 4.19.291
- ≥ 4.20 · < 5.4.251
- ≥ 5.5 · < 5.10.188
- ≥ 5.11 · < 5.15.150
- ≥ 5.16 · < 6.1.83
- ≥ 6.2 · < 6.4.7
No data.
Red Hat Enterprise Linux 8
kernel-0:4.18.0-553.el8_10
Fixed · RHSA-2024:3138
Red Hat Enterprise Linux 9
kernel-0:5.14.0-427.13.1.el9_4
Fixed · RHSA-2024:2394
Red Hat Enterprise Linux 9
kernel-0:5.14.0-427.13.1.el9_4
Fixed · RHSA-2024:2394
Red Hat Enterprise Linux 10
kernel
Not affected
Red Hat Enterprise Linux 6
kernel
Out of support scope
Red Hat Enterprise Linux 7
kernel
Fix deferred
Red Hat Enterprise Linux 7
kernel-rt
Fix deferred
Red Hat Enterprise Linux 8
kernel-rt
Fix deferred
Red Hat Enterprise Linux 9
kernel-rt
Fix deferred
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 8 | kernel-0:4.18.0-553.el8_10 | Fixed | RHSA-2024:3138 |
| Red Hat Enterprise Linux 9 | kernel-0:5.14.0-427.13.1.el9_4 | Fixed | RHSA-2024:2394 |
| Red Hat Enterprise Linux 9 | kernel-0:5.14.0-427.13.1.el9_4 | Fixed | RHSA-2024:2394 |
| Red Hat Enterprise Linux 10 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 6 | kernel | Out of support scope | n/a |
| Red Hat Enterprise Linux 7 | kernel | Fix deferred | n/a |
| Red Hat Enterprise Linux 7 | kernel-rt | Fix deferred | n/a |
| Red Hat Enterprise Linux 8 | kernel-rt | Fix deferred | n/a |
| Red Hat Enterprise Linux 9 | kernel-rt | Fix deferred | n/a |
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Metrics
No CVSS v4.0 score for this CVE.
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
No CVSS v3.0 score for this CVE.
No CVSS v2.0 score for this CVE.
This CVE is not in the KEV list.
No CISA SSVC assessment for this CVE yet.
Estimated probability of exploitation in the wild in the next 30 days (FIRST EPSS). As of Oct 3, 2026.
Score over time
2025–2026- EPSS v4
- EPSS v5
Percentile over time
- EPSS v4
- EPSS v5
Table of values (3 key points)
Flat stretches are collapsed; showing up to 120 newest points.
| Date | Score | Percentile | Model |
|---|---|---|---|
| Oct 3, 2026 | 0.12% (0.00119) | 1.58th | v5 (v2026.06.15) |
| Jun 15, 2026 | 0.11% (0.00112) | 1.62th | v5 (v2026.06.15) |
| Sep 16, 2025 | 0.02% (0.00024) | 5.08th | v4 (v2025.03.14) |
References (13)
- https://access.redhat.com/security/cve/CVE-2023-53151 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2395410 Issue Tracking
- https://git.kernel.org/stable/c/00ecb6fa67c0f772290c5ea5ae8b46eefd503b83 Patch
- https://git.kernel.org/stable/c/010444623e7f4da6b4a4dd603a7da7469981e293 Patch
- https://git.kernel.org/stable/c/1d467e10507167eb6dc2c281a87675b731955d86 Patch
- https://git.kernel.org/stable/c/634daf6b2c81015cc5e28bf694a6a94a50c641cd Patch
- https://git.kernel.org/stable/c/84a578961b2566e475bfa8740beaf0abcc781a6f Patch
- https://git.kernel.org/stable/c/d0345f7c7dbc5d42e4e6f1db99c1c1879d7b0eb5 Patch
- https://git.kernel.org/stable/c/f45b2fa7678ab385299de345f7e85d05caea386b Patch
- https://git.kernel.org/stable/c/fbf50184190d55f8717bd29aa9530c399be96f30 Patch
- https://lore.kernel.org/linux-cve-announce/2025091552-CVE-2023-53151-263e@gregkh/T
- https://nvd.nist.gov/vuln/detail/CVE-2023-53151
- https://www.cve.org/CVERecord?id=CVE-2023-53151
Change history (0)
No recorded changes yet.