cbcvebase.
CVE-2023-53181
published 2025-09-15

CVE-2023-53181: In the Linux kernel, the following vulnerability has been resolved: dma-buf/dma-resv: Stop leaking on krealloc() failure Currently dma_resv_get_fences() will…

PriorityP418medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.14%
4.1th percentile
In the Linux kernel, the following vulnerability has been resolved: dma-buf/dma-resv: Stop leaking on krealloc() failure Currently dma_resv_get_fences() will leak the previously allocated array if the fence iteration got restarted and the krealloc_array() fails. Free the old array by hand, and make sure we still clear the returned *fences so the caller won't end up accessing freed memory. Some (but not all) of the callers of dma_resv_get_fences() seem to still trawl through the array even when dma_resv_get_fences() failed. And let's zero out *num_fences as well for good measure.

Affected

11 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.52-1 (bookworm)linux 6.1.52-1 (bookworm)
linuxlinux
linuxlinux>= d3c80698c9f58a0683badf78793eebaa0c71afbd < 19e7b9f1f7e1cb92a4cc53b4c064f7fb4b1f198319e7b9f1f7e1cb92a4cc53b4c064f7fb4b1f1983
linuxlinux>= d3c80698c9f58a0683badf78793eebaa0c71afbd < 819656cc03dec7f7f7800274dfbc8eb49f888e9f819656cc03dec7f7f7800274dfbc8eb49f888e9f
linuxlinux>= d3c80698c9f58a0683badf78793eebaa0c71afbd < 05abb3be91d8788328231ee02973ab3d47f5e3d205abb3be91d8788328231ee02973ab3d47f5e3d2
linuxlinux_kernel
linuxlinux_kernel>= 0 < 6.1.52-16.1.52-1
linuxlinux_kernel>= 0 < 6.4.11-16.4.11-1
linuxlinux_kernel>= 0 < 6.4.11-16.4.11-1
linuxlinux_kernel>= 5.16 < 6.1.426.1.42
linuxlinux_kernel>= 6.2 < 6.4.76.4.7

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.