CVE-2023-53445Improper Control of a Resource Through its Lifetime in Linux

Severity
5.5MEDIUMNVD
EPSS
0.0%
top 95.84%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedSep 18

Description

In the Linux kernel, the following vulnerability has been resolved: net: qrtr: Fix a refcount bug in qrtr_recvmsg() Syzbot reported a bug as following: refcount_t: addition on 0; use-after-free. ... RIP: 0010:refcount_warn_saturate+0x17c/0x1f0 lib/refcount.c:25 ... Call Trace: __refcount_add include/linux/refcount.h:199 [inline] __refcount_inc include/linux/refcount.h:250 [inline] refcount_inc include/linux/refcount.h:267 [inline] kref_get include/linux/kref.h:45 [inline] qrtr_node_acquire n

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:HExploitability: 1.8 | Impact: 3.6

Affected Packages4 packages

NVDlinux/linux_kernel5.65.10.178+4
Debianlinux/linux_kernel< 5.10.178-1+3
CVEListV5linux/linux0a7e0d0ef05440db03c3199e84d228db943b237f98a9cd82c541ef6cbdb829cd6c05cbbb471e373c+5
debiandebian/linux< linux 6.1.25-1 (bookworm)

Patches

🔴Vulnerability Details

2
OSV
CVE-2023-53445: In the Linux kernel, the following vulnerability has been resolved: net: qrtr: Fix a refcount bug in qrtr_recvmsg() Syzbot reported a bug as following2025-09-18
GHSA
GHSA-3w47-qc84-prwf: In the Linux kernel, the following vulnerability has been resolved: net: qrtr: Fix a refcount bug in qrtr_recvmsg() Syzbot reported a bug as followi2025-09-18

📋Vendor Advisories

2
Red Hat
kernel: net: qrtr: Fix a refcount bug in qrtr_recvmsg()2025-09-18
Debian
CVE-2023-53445: linux - In the Linux kernel, the following vulnerability has been resolved: net: qrtr: ...2023
CVE-2023-53445 — Linux vulnerability | cvebase