CVE-2023-53448Reachable Assertion in Linux

Severity
5.5MEDIUMNVD
EPSS
0.0%
top 99.30%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedOct 1

Description

In the Linux kernel, the following vulnerability has been resolved: fbdev: imxfb: Removed unneeded release_mem_region Remove unnecessary release_mem_region from the error path to prevent mem region from being released twice, which could avoid resource leak or other unexpected issues.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:HExploitability: 1.8 | Impact: 3.6

Affected Packages4 packages

NVDlinux/linux_kernel6.06.1.42+2
Debianlinux/linux_kernel< 6.1.52-1+2
CVEListV5linux/linuxb083c22d51148f3d3028291343196471be5d9f366aa851f6276fa08cd59b044bc2b803c49edf58a2+3
debiandebian/linux< linux 6.1.52-1 (bookworm)

Patches

🔴Vulnerability Details

2
GHSA
GHSA-4hg6-gwcj-8xvf: In the Linux kernel, the following vulnerability has been resolved: fbdev: imxfb: Removed unneeded release_mem_region Remove unnecessary release_mem2025-10-01
OSV
CVE-2023-53448: In the Linux kernel, the following vulnerability has been resolved: fbdev: imxfb: Removed unneeded release_mem_region Remove unnecessary release_mem_r2025-10-01

📋Vendor Advisories

2
Red Hat
kernel: fbdev: imxfb: Removed unneeded release_mem_region2025-10-01
Debian
CVE-2023-53448: linux - In the Linux kernel, the following vulnerability has been resolved: fbdev: imxf...2023
CVE-2023-53448 — Reachable Assertion in Linux | cvebase