cbcvebase.
CVE-2023-53379
published 2025-09-18

CVE-2023-53379: In the Linux kernel, the following vulnerability has been resolved: usb: phy: phy-tahvo: fix memory leak in tahvo_usb_probe() Smatch reports…

PriorityP416medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.14%
3.4th percentile
In the Linux kernel, the following vulnerability has been resolved: usb: phy: phy-tahvo: fix memory leak in tahvo_usb_probe() Smatch reports: drivers/usb/phy/phy-tahvo.c: tahvo_usb_probe() warn: missing unwind goto? After geting irq, if ret < 0, it will return without error handling to free memory. Just add error handling to fix this problem.

Affected

36 ranges· showing 25
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.52-1 (bookworm)linux 6.1.52-1 (bookworm)
linuxlinux
linuxlinux
linuxlinux
linuxlinux
linuxlinux
linuxlinux>= 0d45a1373e669880b8beaecc8765f44cb0241e47 < ecf26d6e1b5450620c214feea537bb6ce05c6741ecf26d6e1b5450620c214feea537bb6ce05c6741
linuxlinux>= 0d45a1373e669880b8beaecc8765f44cb0241e47 < dd9b7c89a80428cc5f4ae0d2e1311fdedb2a1aacdd9b7c89a80428cc5f4ae0d2e1311fdedb2a1aac
linuxlinux>= 0d45a1373e669880b8beaecc8765f44cb0241e47 < 38dbd6f72bfbeba009efe0e9ec1f3ff09f9e23fa38dbd6f72bfbeba009efe0e9ec1f3ff09f9e23fa
linuxlinux>= 0d45a1373e669880b8beaecc8765f44cb0241e47 < 342161c11403ea00e9febc16baab1d883d589d04342161c11403ea00e9febc16baab1d883d589d04
linuxlinux>= 3f06415418f37ac602e71a61ee83ea43553e6bbd < 3e5a7bebf832b1482efe27bcc15a88c5b28a30d03e5a7bebf832b1482efe27bcc15a88c5b28a30d0
linuxlinux>= 4.14.247 < 4.14.3224.14.322
linuxlinux>= 4.19.207 < 4.19.2914.19.291
linuxlinux>= 4.4.284 < 4.54.5
linuxlinux>= 4.9.283 < 4.104.10
linuxlinux>= 494629ba62a961de1f2dd0b7125878acb27b8043 < 56901de563359de20513e16a9ae008ae2c22e9a956901de563359de20513e16a9ae008ae2c22e9a9
linuxlinux>= 5.10.65 < 5.10.1885.10.188
linuxlinux>= 5.13.17 < 5.145.14
linuxlinux>= 5.14.4 < 5.155.15
linuxlinux>= 5.4.146 < 5.4.2515.4.251
linuxlinux>= 5e2d2f05204f7ab9c645a1fb9f10a3f6393dd2fa < 4da9edeccf77d7b4c6dbcb34d5908acdaa5bd7e34da9edeccf77d7b4c6dbcb34d5908acdaa5bd7e3
linuxlinux>= 606668e24a0d7fd262e2326d76bb60b965fe713f < fe9cdc19861950582f077f254a12026e169eaee5fe9cdc19861950582f077f254a12026e169eaee5
linuxlinux_kernel>= 0 < 5.10.191-15.10.191-1
linuxlinux_kernel>= 0 < 6.1.52-16.1.52-1
linuxlinux_kernel>= 0 < 6.4.4-16.4.4-1

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.