Review reviewHigh

CVE-2023-53986

Linux

In the Linux kernel, the following vulnerability has been resolved: mips: bmips: BCM6358: disable RAC flush for TP1 RAC flush causes kernel panics on BCM6358 with EHCI/OHCI when booting from TP1: [ 3.881739] usb 1-1: new high-speed USB device number 2 using ehci-platform [ 3.895011] Reserved instruction in kernel code[#1]: [ 3.900113] CPU: 0 PID: 1 Comm: init Not tainted 5.10.16 #0 [ 3.905829] $ 0 : 00000000 10008700 00000000 77d94060 [ 3.911238] $ 4 : 7fd1f088 00000000 81431cac 81431ca0 [ 3.916641] $ 8 : 00000000 ffffefff 8075cd34 00000000 [ 3.922043] $12 : 806f8d40 f3e812b7 00000000 000d9...

CVSS
8.6
EPSS
0.38%
30.8% percentile
CISA KEV
Not listed
Published
2025.12.24
PRIORITY ASSESSMENT

Review review

The CVSS severity warrants an early asset and exposure review.

Known exploitationNot established by KEV
Exploit probability0.38%
Technical severityCVSS 8.6

Vulnerability overview

In the Linux kernel, the following vulnerability has been resolved: mips: bmips: BCM6358: disable RAC flush for TP1 RAC flush causes kernel panics on BCM6358 with EHCI/OHCI when booting from TP1: [ 3.881739] usb 1-1: new high-speed USB device number 2 using ehci-platform [ 3.895011] Reserved instruction in kernel code[#1]: [ 3.900113] CPU: 0 PID: 1 Comm: init Not tainted 5.10.16 #0 [ 3.905829] $ 0 : 00000000 10008700 00000000 77d94060 [ 3.911238] $ 4 : 7fd1f088 00000000 81431cac 81431ca0 [ 3.916641] $ 8 : 00000000 ffffefff 8075cd34 00000000 [ 3.922043] $12 : 806f8d40 f3e812b7 00000000 000d9...

Affected product and versions

Product
Linux
Affected versions
>= d59098a0e9cb3c7767090e935c909b37a30629ab < d65de5ee8b72868fbbbd39ca73017d0e526fa13a, >= d59098a0e9cb3c7767090e935c909b37a30629ab < 47a449ec09b4479b89dcc6b27ec3829fc82ffafb, >= d59098a0e9cb3c7767090e935c909b37a30629ab < 65b723644294f1d79770704162c0e8d1f700b6f1, >= d59098a0e9cb3c7767090e935c909b37a30629ab < 2cdbcff99f15db86a10672fb220379a1ae46ccae, >= d59098a0e9cb3c7767090e935c909b37a30629ab < 288c96aa5b5526cd4a946e84ef85e165857693b5, >= d59098a0e9cb3c7767090e935c909b37a30629ab < ab327f8acdf8d06601fbf058859a539a9422afff, >= 4.19
Fixed versions
No verified fixed-version field is available yet

Recommended response sequence

Confirm exposure before applying a vendor-supported change.

Full remediation guide
  1. 1
    Identify

    Confirm that Linux and an affected version are present.

  2. 2
    Prioritize

    Combine exploitation signals with asset exposure and business criticality.

  3. 3
    Remediate

    Follow the vendor advisory or supported update path and preserve rollback options.

  4. 4
    Verify

    Recheck the version, service health, access paths, and relevant logs.

Technical data

CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:H
CWE
Not available
CVE-2023-53986 — Linux | SECUFOCUS NOW