CVE-2023-53604
published 2025-10-04CVE-2023-53604: In the Linux kernel, the following vulnerability has been resolved: dm integrity: call kmem_cache_destroy() in dm_integrity_init() error path Otherwise the…
PriorityP335high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.14%
4.3th percentile
In the Linux kernel, the following vulnerability has been resolved:
dm integrity: call kmem_cache_destroy() in dm_integrity_init() error path
Otherwise the journal_io_cache will leak if dm_register_target() fails.
Affected
23 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 6.1.37-1 (bookworm) | linux 6.1.37-1 (bookworm) |
| linux | linux | — | — |
| linux | linux | >= 7eada909bfd7ac90a4522e56aa3179d1fd68cd14 < ff4d6b5b38429a7731e5593680d2138bf74dd546 | ff4d6b5b38429a7731e5593680d2138bf74dd546 |
| linux | linux | >= 7eada909bfd7ac90a4522e56aa3179d1fd68cd14 < ca8b634fdf07dee3f6dfde57079c4511480b525e | ca8b634fdf07dee3f6dfde57079c4511480b525e |
| linux | linux | >= 7eada909bfd7ac90a4522e56aa3179d1fd68cd14 < 6d126899b0747305c9d39a0bcf87e0df9c3f555b | 6d126899b0747305c9d39a0bcf87e0df9c3f555b |
| linux | linux | >= 7eada909bfd7ac90a4522e56aa3179d1fd68cd14 < 44f29e93a55b544dc961b6f8b4e93abaeaafb9ee | 44f29e93a55b544dc961b6f8b4e93abaeaafb9ee |
| linux | linux | >= 7eada909bfd7ac90a4522e56aa3179d1fd68cd14 < a5d8c6bf58e5b2e70fbc15f3b08dfc1ba6f269ac | a5d8c6bf58e5b2e70fbc15f3b08dfc1ba6f269ac |
| linux | linux | >= 7eada909bfd7ac90a4522e56aa3179d1fd68cd14 < 3877b5c1509b16eeb1f275228fd91789cd88cf17 | 3877b5c1509b16eeb1f275228fd91789cd88cf17 |
| linux | linux | >= 7eada909bfd7ac90a4522e56aa3179d1fd68cd14 < c8c9c50268729bf35f6c9bb1205f490db920454e | c8c9c50268729bf35f6c9bb1205f490db920454e |
| linux | linux | >= 7eada909bfd7ac90a4522e56aa3179d1fd68cd14 < e09a592fdd6c716506774bdbebb5f6c537b47767 | e09a592fdd6c716506774bdbebb5f6c537b47767 |
| linux | linux | >= 7eada909bfd7ac90a4522e56aa3179d1fd68cd14 < 6b79a428c02769f2a11f8ae76bf866226d134887 | 6b79a428c02769f2a11f8ae76bf866226d134887 |
| linux | linux_kernel | >= 0 < 5.10.191-1 | 5.10.191-1 |
| linux | linux_kernel | >= 0 < 6.1.37-1 | 6.1.37-1 |
| linux | linux_kernel | >= 0 < 6.3.7-1 | 6.3.7-1 |
| linux | linux_kernel | >= 0 < 6.3.7-1 | 6.3.7-1 |
| linux | linux_kernel | >= 4.12 < 4.14.315 | 4.14.315 |
| linux | linux_kernel | >= 4.15 < 4.19.283 | 4.19.283 |
| linux | linux_kernel | >= 4.20 < 5.4.243 | 5.4.243 |
| linux | linux_kernel | >= 5.11 < 5.15.111 | 5.15.111 |
| linux | linux_kernel | >= 5.16 < 6.1.28 | 6.1.28 |
| linux | linux_kernel | >= 5.5 < 5.10.180 | 5.10.180 |
| linux | linux_kernel | >= 6.2 < 6.2.15 | 6.2.15 |
| linux | linux_kernel | >= 6.3 < 6.3.2 | 6.3.2 |
CVSS provenance
nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv7.8HIGH
vendor_debian7.8HIGH
vendor_redhat7.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
kernel: dm integrity: call kmem_cache_destroy() in dm_integrity_init() error path
vendor_redhat·2025-10-04·CVSS 7.8
CVE-2023-53604 [HIGH] CWE-772 kernel: dm integrity: call kmem_cache_destroy() in dm_integrity_init() error path
kernel: dm integrity: call kmem_cache_destroy() in dm_integrity_init() error path
In the Linux kernel, the following vulnerability has been resolved:
dm integrity: call kmem_cache_destroy() in dm_integrity_init() error path
Otherwise the journal_io_cache will leak if dm_register_target() fails.
Package: kernel (Red Hat Enterprise Linux 10) - Not affected
Package: kernel (Red Hat Enterprise Linux 6) - Not affected
Package: kernel (Red Hat Enterprise Linux 7) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 7) - Not affected
Package: kernel (Red Hat Enterprise Linux 8) - Fix deferred
Package: kernel-rt (Red Hat Enterprise Linux 8) - Fix deferred
Package: kernel (Red Hat Enterprise Linux 9) - Fix deferred
Package: kernel-rt (Red Hat Enterprise Linux 9) - Fix deferred
Debian
CVE-2023-53604: linux - In the Linux kernel, the following vulnerability has been resolved: dm integrit...
vendor_debian·2023·CVSS 7.8
CVE-2023-53604 [HIGH] CVE-2023-53604: linux - In the Linux kernel, the following vulnerability has been resolved: dm integrit...
In the Linux kernel, the following vulnerability has been resolved: dm integrity: call kmem_cache_destroy() in dm_integrity_init() error path Otherwise the journal_io_cache will leak if dm_register_target() fails.
Scope: local
bookworm: resolved (fixed in 6.1.37-1)
bullseye: resolved (fixed in 5.10.191-1)
forky: resolved (fixed in 6.3.7-1)
sid: resolved (fixed in 6.3.7-1)
trixie: resolved (fixed in 6.3.7-1)
VulDB
Linux Kernel up to 6.3.1 kmem_cache_destroy privilege escalation (EUVD-2023-60004 / Nessus ID 284771)
vuldb·2026-04-28·CVSS 7.8
CVE-2023-53604 [HIGH] Linux Kernel up to 6.3.1 kmem_cache_destroy privilege escalation (EUVD-2023-60004 / Nessus ID 284771)
A vulnerability was found in Linux Kernel up to 6.3.1. It has been rated as critical. This affects the function kmem_cache_destroy. Performing a manipulation results in privilege escalation.
This vulnerability is cataloged as CVE-2023-53604. The attack must originate from the local network. There is no exploit available.
Upgrading the affected component is advised.
GHSA
GHSA-vh29-7344-hrgw: In the Linux kernel, the following vulnerability has been resolved:
dm integrity: call kmem_cache_destroy() in dm_integrity_init() error path
Otherw
ghsa_unreviewed·2025-10-04
CVE-2023-53604 [HIGH] GHSA-vh29-7344-hrgw: In the Linux kernel, the following vulnerability has been resolved:
dm integrity: call kmem_cache_destroy() in dm_integrity_init() error path
Otherw
In the Linux kernel, the following vulnerability has been resolved:
dm integrity: call kmem_cache_destroy() in dm_integrity_init() error path
Otherwise the journal_io_cache will leak if dm_register_target() fails.
OSV
CVE-2023-53604: In the Linux kernel, the following vulnerability has been resolved: dm integrity: call kmem_cache_destroy() in dm_integrity_init() error path Otherwis
osv·2025-10-04·CVSS 7.8
CVE-2023-53604 [HIGH] CVE-2023-53604: In the Linux kernel, the following vulnerability has been resolved: dm integrity: call kmem_cache_destroy() in dm_integrity_init() error path Otherwis
In the Linux kernel, the following vulnerability has been resolved: dm integrity: call kmem_cache_destroy() in dm_integrity_init() error path Otherwise the journal_io_cache will leak if dm_register_target() fails.
No detection rules found.
No public exploits indexed.
https://git.kernel.org/stable/c/3877b5c1509b16eeb1f275228fd91789cd88cf17https://git.kernel.org/stable/c/44f29e93a55b544dc961b6f8b4e93abaeaafb9eehttps://git.kernel.org/stable/c/6b79a428c02769f2a11f8ae76bf866226d134887https://git.kernel.org/stable/c/6d126899b0747305c9d39a0bcf87e0df9c3f555bhttps://git.kernel.org/stable/c/a5d8c6bf58e5b2e70fbc15f3b08dfc1ba6f269achttps://git.kernel.org/stable/c/c8c9c50268729bf35f6c9bb1205f490db920454ehttps://git.kernel.org/stable/c/ca8b634fdf07dee3f6dfde57079c4511480b525ehttps://git.kernel.org/stable/c/e09a592fdd6c716506774bdbebb5f6c537b47767https://git.kernel.org/stable/c/ff4d6b5b38429a7731e5593680d2138bf74dd546
2025-10-04
Published