cbcvebase.
CVE-2023-52571
published 2024-03-02

CVE-2023-52571: In the Linux kernel, the following vulnerability has been resolved: power: supply: rk817: Fix node refcount leak Dan Carpenter reports that the Smatch static…

PriorityP425high7.1CVSS 3.1
AVLACLPRLUINSUCHINAH
EPSS
0.23%
13.9th percentile
In the Linux kernel, the following vulnerability has been resolved: power: supply: rk817: Fix node refcount leak Dan Carpenter reports that the Smatch static checker warning has found that there is another refcount leak in the probe function. While of_node_put() was added in one of the return paths, it should in fact be added for ALL return paths that return an error and at driver removal time.

Affected

12 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.64-1 (bookworm)linux 6.1.64-1 (bookworm)
linuxlinux
linuxlinux>= 54c03bfd094fb74f9533a9c28250219afe182382 < 70326b46b6a043f7e7404b2ff678b033c06d657770326b46b6a043f7e7404b2ff678b033c06d6577
linuxlinux>= 54c03bfd094fb74f9533a9c28250219afe182382 < 488ef44c068e79752dba8eda0b75f524f111a695488ef44c068e79752dba8eda0b75f524f111a695
linuxlinux>= 6.1.2 < 6.1.566.1.56
linuxlinux>= 7d1e3961725e69774871b081a065c2b3640c5f0e < fe6406238d5a24e9fb0286c71edd67b99d8db58dfe6406238d5a24e9fb0286c71edd67b99d8db58d
linuxlinux_kernel
linuxlinux_kernel>= 0 < 6.1.64-16.1.64-1
linuxlinux_kernel>= 0 < 6.5.6-16.5.6-1
linuxlinux_kernel>= 0 < 6.5.6-16.5.6-1
linuxlinux_kernel>= 6.1.2 < 6.1.566.1.56
linuxlinux_kernel>= 6.2 < 6.5.66.5.6

CVSS provenance

nvdv3.17.1HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
osv7.1HIGH
vendor_debian7.1HIGH
vendor_redhat7.1HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.