CVE-2023-53370Missing Release of Memory after Effective Lifetime in Linux

Severity
5.5MEDIUMNVD
EPSS
0.0%
top 97.72%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedSep 18

Description

In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: fix memory leak in mes self test The fences associated with mes queue have to be freed up during amdgpu_ring_fini.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:HExploitability: 1.8 | Impact: 3.6

Affected Packages7 packages

NVDlinux/linux_kernel4.26.1.47+1
Debianlinux/linux_kernel< 6.1.52-1+2
CVEListV5linux/linuxd38ceaf99ed015f2a0b9af3499791bd3a3daae21ce3288d8d654b252ba832626e7de481c195ef20a+3
debiandebian/linux< linux 6.1.52-1 (bookworm)

Patches

🔴Vulnerability Details

2
OSV
CVE-2023-53370: In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: fix memory leak in mes self test The fences associated with mes queue2025-09-18
GHSA
GHSA-rmfh-6vx9-x965: In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: fix memory leak in mes self test The fences associated with mes queu2025-09-18

📋Vendor Advisories

3
Red Hat
kernel: drm/amdgpu: fix memory leak in mes self test2025-09-18
Microsoft
drm/amdgpu: fix memory leak in mes self test2025-09-09
Debian
CVE-2023-53370: linux - In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu:...2023
CVE-2023-53370 — Linux vulnerability | cvebase