← All Advisories

CVE-2026-53050

Last refreshed2026-10-06

Status: UPDATED  |  Advisory ID: CVE-2026-53050

Key Details

CVECVE-2026-53050
CVSS Score / Version7.8 (High) / CVSS v3.1
Updated2026-09-08
CVSS VectorCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS Proseattack vector is local; attack complexity is low; privileges required is low; user interaction is none; scope is unchanged; confidentiality impact is high; integrity impact is high; availability impact is high.
Affected productsSiemens SIMATIC S7-1500 CPU 1518-4 PN/DP MFP, Siemens SIMATIC S7-1500 CPU 1518F-4 PN/DP MFP, and Siemens SIPLUS S7-1500 CPU 1518-4 PN/DP MFP
Classified asCWE-362 (Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition'))

Affected Products, Subsystems & Sectors

VendorProductAffected VersionsPatch Status
SiemensSIMATIC S7-1500 CPU 1518-4 PN/DP MFP
SiemensSIMATIC S7-1500 CPU 1518F-4 PN/DP MFP
SiemensSIPLUS S7-1500 CPU 1518-4 PN/DP MFP
SubsystemsGeneral OT
SectorsMultiple

What to Know

In the Linux kernel, the following vulnerability has been resolved:

quota: Fix race of dquot_scan_active() with quota deactivation

dquot_scan_active() can race with quota deactivation in

quota_release_workfn() like:

CPU0 (quota_release_workfn) CPU1 (dquot_scan_active)

============================== ==============================

spin_lock(&dq_list_lock);

list_replace_init(

&releasing_dquots, &rls_head);

/* dquot X on rls_head,

dq_count == 0,

DQ_ACTIVE_B still set */

spin_unlock(&dq_list_lock);

synchronize_srcu(&dquot_srcu);

spin_lock(&dq_list_lock);

list_for_each_entry(dquot,

&inuse_list, dq_inuse) {

/* finds dquot X */

dquot_active(X) -> true

atomic_inc(&X->dq_count);

}

spin_unlock(&dq_list_lock);

spin_lock(&dq_list_lock);

dquot = list_first_entry(&rls_head);

WARN_ON_ONCE(atomic_read(&dquot->dq_count));

The problem is not only a cosmetic one as under memory pressure the

caller of dquot_scan_active() can end up working on freed dquot.

Fix the problem by making sure the dquot is removed from releasing list

when we acquire a reference to it. (NVD)

What to Do

Monitor Siemens's web page for any future patch releases.

References

SourceReference
NVDhttps://nvd.nist.gov/vuln/detail/CVE-2026-53050
CVEhttps://www.cve.org/CVERecord?id=CVE-2026-53050