cbcvebase.
CVE-2023-52662
published 2024-05-17

CVE-2023-52662: In the Linux kernel, the following vulnerability has been resolved: drm/vmwgfx: fix a memleak in vmw_gmrid_man_get_node When ida_alloc_max fails, resources…

PriorityP417medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.24%
14.8th percentile
In the Linux kernel, the following vulnerability has been resolved: drm/vmwgfx: fix a memleak in vmw_gmrid_man_get_node When ida_alloc_max fails, resources allocated before should be freed, including *res allocated by kmalloc and ttm_resource_init.

Affected

22 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.85-1 (bookworm)linux 6.1.85-1 (bookworm)
linuxlinux
linuxlinux>= d3bcb4b02fe977d6b7a82dbb6288e9223b5b6732 < 03b1072616a8f7d6e8594f643b416a9467c83fbf03b1072616a8f7d6e8594f643b416a9467c83fbf
linuxlinux>= d3bcb4b02fe977d6b7a82dbb6288e9223b5b6732 < 40624af6674745e174c754a20d7c53c250e65e7a40624af6674745e174c754a20d7c53c250e65e7a
linuxlinux>= d3bcb4b02fe977d6b7a82dbb6288e9223b5b6732 < 83e0f220d1e992fa074157fcf14945bf170ffbc583e0f220d1e992fa074157fcf14945bf170ffbc5
linuxlinux>= d3bcb4b02fe977d6b7a82dbb6288e9223b5b6732 < 6fc6233f6db1579b69b54b44571f1a7fde8186e66fc6233f6db1579b69b54b44571f1a7fde8186e6
linuxlinux>= d3bcb4b02fe977d6b7a82dbb6288e9223b5b6732 < d1e546ab91c670e536a274a75481034ab7534876d1e546ab91c670e536a274a75481034ab7534876
linuxlinux>= d3bcb4b02fe977d6b7a82dbb6288e9223b5b6732 < 89709105a6091948ffb6ec2427954cbfe45358ce89709105a6091948ffb6ec2427954cbfe45358ce
linuxlinux_kernel>= 0 < 6.1.85-16.1.85-1
linuxlinux_kernel>= 0 < 6.7.12-16.7.12-1
linuxlinux_kernel>= 0 < 6.7.12-16.7.12-1
linuxlinux_kernel>= 0 < 5.15.0-112.1225.15.0-112.122
linuxlinux_kernel>= 0 < 6.8.0-35.356.8.0-35.35
linuxlinux_kernel>= 5.14 < 5.15.1535.15.153
linuxlinux_kernel>= 5.16 < 6.1.836.1.83
linuxlinux_kernel>= 6.2 < 6.6.236.6.23
linuxlinux_kernel>= 6.7 < 6.7.116.7.11
linuxlinux_kernel>= 6.8 < 6.8.26.8.2
msrcazl3_hyperv-daemons_6.6.22.1-2_on_azure_linux_3.0
msrcazl3_hyperv-daemons_6.6.35.1-1_on_azure_linux_3.0
msrcazure_linux_3.0_arm
msrcazure_linux_3.0_x64

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv7.0HIGH
vendor_ubuntu7.0HIGH
vendor_debian5.5MEDIUM
vendor_msrc5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.