cbcvebase.
CVE-2023-53568
published 2025-10-04

CVE-2023-53568: In the Linux kernel, the following vulnerability has been resolved: s390/zcrypt: don't leak memory if dev_set_name() fails When dev_set_name() fails…

PriorityP418medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.14%
3.4th percentile
In the Linux kernel, the following vulnerability has been resolved: s390/zcrypt: don't leak memory if dev_set_name() fails When dev_set_name() fails, zcdn_create() doesn't free the newly allocated resources. Do it.

Affected

17 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.55-1 (bookworm)linux 6.1.55-1 (bookworm)
linuxlinux
linuxlinux>= 00fab2350e6b91e57b3cdcd5d9f01056775a921d < 6b0cb9c055843777b374309503d89eabeb7693556b0cb9c055843777b374309503d89eabeb769355
linuxlinux>= 00fab2350e6b91e57b3cdcd5d9f01056775a921d < 0878052579cb2773caee64812a811edcab6b5a550878052579cb2773caee64812a811edcab6b5a55
linuxlinux>= 00fab2350e6b91e57b3cdcd5d9f01056775a921d < 131cd74a8e38d75239f2c81dfee53d6554eb8bf8131cd74a8e38d75239f2c81dfee53d6554eb8bf8
linuxlinux>= 00fab2350e6b91e57b3cdcd5d9f01056775a921d < 147d8da33a2c2195ec63acd56cd7d80a3458c253147d8da33a2c2195ec63acd56cd7d80a3458c253
linuxlinux>= 00fab2350e6b91e57b3cdcd5d9f01056775a921d < 174f11ef1615ec3ab1e2189685864433c0d855a2174f11ef1615ec3ab1e2189685864433c0d855a2
linuxlinux>= 00fab2350e6b91e57b3cdcd5d9f01056775a921d < 6252f47b78031979ad919f971dc8468b893488bd6252f47b78031979ad919f971dc8468b893488bd
linuxlinux_kernel>= 0 < 5.10.197-15.10.197-1
linuxlinux_kernel>= 0 < 6.1.55-16.1.55-1
linuxlinux_kernel>= 0 < 6.5.6-16.5.6-1
linuxlinux_kernel>= 0 < 6.5.6-16.5.6-1
linuxlinux_kernel>= 4.20 < 5.4.2575.4.257
linuxlinux_kernel>= 5.11 < 5.15.1325.15.132
linuxlinux_kernel>= 5.16 < 6.1.546.1.54
linuxlinux_kernel>= 5.5 < 5.10.1955.10.195
linuxlinux_kernel>= 6.2 < 6.5.46.5.4

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.