CVE-2023-53544
published 2025-10-04CVE-2023-53544: In the Linux kernel, the following vulnerability has been resolved: cpufreq: davinci: Fix clk use after free The remove function first frees the clks and only…
PriorityP338high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.15%
4.6th percentile
In the Linux kernel, the following vulnerability has been resolved:
cpufreq: davinci: Fix clk use after free
The remove function first frees the clks and only then calls
cpufreq_unregister_driver(). If one of the cpufreq callbacks is called
just before cpufreq_unregister_driver() is run, the freed clks might be
used.
Affected
12 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 6.1.20-1 (bookworm) | linux 6.1.20-1 (bookworm) |
| linux | linux | — | — |
| linux | linux | >= 6601b8030de3e9c29930684eeac15302a59f991a < 66b3bbe6fbd8dd410868e5b53ac3944a934b9310 | 66b3bbe6fbd8dd410868e5b53ac3944a934b9310 |
| linux | linux | >= 6601b8030de3e9c29930684eeac15302a59f991a < a5f024d0e6f91e05c816ad4ee8837173369dd5cb | a5f024d0e6f91e05c816ad4ee8837173369dd5cb |
| linux | linux | >= 6601b8030de3e9c29930684eeac15302a59f991a < ab05ae4ab831f64bbc427592c86f599ed9c4324f | ab05ae4ab831f64bbc427592c86f599ed9c4324f |
| linux | linux | >= 6601b8030de3e9c29930684eeac15302a59f991a < 5d8f384a9b4fc50f6a18405f1c08e5a87a77b5b3 | 5d8f384a9b4fc50f6a18405f1c08e5a87a77b5b3 |
| linux | linux_kernel | >= 0 < 6.1.20-1 | 6.1.20-1 |
| linux | linux_kernel | >= 0 < 6.1.20-1 | 6.1.20-1 |
| linux | linux_kernel | >= 0 < 6.1.20-1 | 6.1.20-1 |
| linux | linux_kernel | >= 2.6.33 < 4.14.308 | 4.14.308 |
| linux | linux_kernel | >= 4.15 < 6.1.16 | 6.1.16 |
| linux | linux_kernel | >= 6.2 < 6.2.3 | 6.2.3 |
CVSS provenance
nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv7.8HIGH
vendor_debian7.8HIGH
vendor_redhat7.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
kernel: cpufreq: davinci: Fix clk use after free
vendor_redhat·2025-10-04·CVSS 7.8
CVE-2023-53544 [HIGH] CWE-825 kernel: cpufreq: davinci: Fix clk use after free
kernel: cpufreq: davinci: Fix clk use after free
In the Linux kernel, the following vulnerability has been resolved:
cpufreq: davinci: Fix clk use after free
The remove function first frees the clks and only then calls
cpufreq_unregister_driver(). If one of the cpufreq callbacks is called
just before cpufreq_unregister_driver() is run, the freed clks might be
used.
Package: kernel (Red Hat Enterprise Linux 10) - Not affected
Package: kernel (Red Hat Enterprise Linux 6) - Not affected
Package: kernel (Red Hat Enterprise Linux 7) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 7) - Not affected
Package: kernel (Red Hat Enterprise Linux 8) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 8) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 9) - Fix def
Debian
CVE-2023-53544: linux - In the Linux kernel, the following vulnerability has been resolved: cpufreq: da...
vendor_debian·2023·CVSS 7.8
CVE-2023-53544 [HIGH] CVE-2023-53544: linux - In the Linux kernel, the following vulnerability has been resolved: cpufreq: da...
In the Linux kernel, the following vulnerability has been resolved: cpufreq: davinci: Fix clk use after free The remove function first frees the clks and only then calls cpufreq_unregister_driver(). If one of the cpufreq callbacks is called just before cpufreq_unregister_driver() is run, the freed clks might be used.
Scope: local
bookworm: resolved (fixed in 6.1.20-1)
bullseye: open
forky: resolved (fixed in 6.1.20-1)
sid: resolved (fixed in 6.1.20-1)
trixie: resolved (fixed in 6.1.20-1)
GHSA
GHSA-3cqr-ghj9-p46w: In the Linux kernel, the following vulnerability has been resolved:
cpufreq: davinci: Fix clk use after free
The remove function first frees the clk
ghsa_unreviewed·2025-10-04
CVE-2023-53544 [HIGH] CWE-416 GHSA-3cqr-ghj9-p46w: In the Linux kernel, the following vulnerability has been resolved:
cpufreq: davinci: Fix clk use after free
The remove function first frees the clk
In the Linux kernel, the following vulnerability has been resolved:
cpufreq: davinci: Fix clk use after free
The remove function first frees the clks and only then calls
cpufreq_unregister_driver(). If one of the cpufreq callbacks is called
just before cpufreq_unregister_driver() is run, the freed clks might be
used.
OSV
CVE-2023-53544: In the Linux kernel, the following vulnerability has been resolved: cpufreq: davinci: Fix clk use after free The remove function first frees the clks
osv·2025-10-04·CVSS 7.8
CVE-2023-53544 [HIGH] CVE-2023-53544: In the Linux kernel, the following vulnerability has been resolved: cpufreq: davinci: Fix clk use after free The remove function first frees the clks
In the Linux kernel, the following vulnerability has been resolved: cpufreq: davinci: Fix clk use after free The remove function first frees the clks and only then calls cpufreq_unregister_driver(). If one of the cpufreq callbacks is called just before cpufreq_unregister_driver() is run, the freed clks might be used.
No detection rules found.
No public exploits indexed.
2025-10-04
Published