CVE-2023-53170Linux vulnerability

5 documents5 sources
Severity
5.5MEDIUMNVD
EPSS
0.0%
top 94.52%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedSep 15

Description

In the Linux kernel, the following vulnerability has been resolved: net: dsa: Removed unneeded of_node_put in felix_parse_ports_node Remove unnecessary of_node_put from the continue path to prevent child node from being released twice, which could avoid resource leak or other unexpected issues.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:HExploitability: 1.8 | Impact: 3.6

Affected Packages4 packages

NVDlinux/linux_kernel6.36.4.5+1
Debianlinux/linux_kernel< 6.4.11-1+1
CVEListV5linux/linuxde879a016a94a670fafeb3eb03b3d5803d81ab377ead10b44b79ce8bfcd51e749d54e009de5f511a+2
debiandebian/linux< linux 6.4.11-1 (forky)

Patches

🔴Vulnerability Details

2
OSV
CVE-2023-53170: In the Linux kernel, the following vulnerability has been resolved: net: dsa: Removed unneeded of_node_put in felix_parse_ports_node Remove unnecessar2025-09-15
GHSA
GHSA-794c-87f2-rm5g: In the Linux kernel, the following vulnerability has been resolved: net: dsa: Removed unneeded of_node_put in felix_parse_ports_node Remove unnecess2025-09-15

📋Vendor Advisories

2
Red Hat
kernel: net: dsa: Removed unneeded of_node_put in felix_parse_ports_node2025-09-15
Debian
CVE-2023-53170: linux - In the Linux kernel, the following vulnerability has been resolved: net: dsa: R...2023
CVE-2023-53170 — Linux vulnerability | cvebase