cbcvebase.
CVE-2023-53249
published 2025-09-15

CVE-2023-53249: In the Linux kernel, the following vulnerability has been resolved: clk: imx: clk-imx8mn: fix memory leak in imx8mn_clocks_probe Use devm_of_iomap() instead of…

PriorityP417medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.14%
3.4th percentile
In the Linux kernel, the following vulnerability has been resolved: clk: imx: clk-imx8mn: fix memory leak in imx8mn_clocks_probe Use devm_of_iomap() instead of of_iomap() to automatically handle the unused ioremap region. If any error occurs, regions allocated by kzalloc() will leak, but using devm_kzalloc() instead will automatically free the memory using devm_kfree().

Affected

17 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.52-1 (bookworm)linux 6.1.52-1 (bookworm)
linuxlinux
linuxlinux>= 96d6392b54dbb1ff2b39448a2516fa6abb33114b < 294321349bd3b0680847fc2bbe66b9ab3e522fea294321349bd3b0680847fc2bbe66b9ab3e522fea
linuxlinux>= 96d6392b54dbb1ff2b39448a2516fa6abb33114b < 50b5ddde8fad5f0ffd239029d0956af633a0f9b150b5ddde8fad5f0ffd239029d0956af633a0f9b1
linuxlinux>= 96d6392b54dbb1ff2b39448a2516fa6abb33114b < 9ba3693b0350b154fdd7830559bbc7b04c0670969ba3693b0350b154fdd7830559bbc7b04c067096
linuxlinux>= 96d6392b54dbb1ff2b39448a2516fa6abb33114b < 9428cf0fbf4be9a24f3e15a0c166b861b12666af9428cf0fbf4be9a24f3e15a0c166b861b12666af
linuxlinux>= 96d6392b54dbb1ff2b39448a2516fa6abb33114b < d4fa5e47af1e7bb2bbcaac062b14216c00e92148d4fa5e47af1e7bb2bbcaac062b14216c00e92148
linuxlinux>= 96d6392b54dbb1ff2b39448a2516fa6abb33114b < 188d070de9132667956f5aadd98d2bd87d3eac89188d070de9132667956f5aadd98d2bd87d3eac89
linuxlinux_kernel>= 0 < 5.10.191-15.10.191-1
linuxlinux_kernel>= 0 < 6.1.52-16.1.52-1
linuxlinux_kernel>= 0 < 6.4.4-16.4.4-1
linuxlinux_kernel>= 0 < 6.4.4-16.4.4-1
linuxlinux_kernel>= 5.11 < 5.15.1215.15.121
linuxlinux_kernel>= 5.16 < 6.1.396.1.39
linuxlinux_kernel>= 5.4 < 5.10.1885.10.188
linuxlinux_kernel>= 6.2 < 6.3.136.3.13
linuxlinux_kernel>= 6.4 < 6.4.46.4.4

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.