CVE-2023-53724Missing Release of Resource after Effective Lifetime in Linux

Severity
5.5MEDIUM
No vector
EPSS
0.0%
top 88.01%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedOct 22

Description

In the Linux kernel, the following vulnerability has been resolved: mfd: pcf50633-adc: Fix potential memleak in pcf50633_adc_async_read() `req` is allocated in pcf50633_adc_async_read(), but adc_enqueue_request() could fail to insert the `req` into queue. We need to check the return value and free it in the case of failure.

Affected Packages4 packages

Linuxlinux/linux_kernel2.6.294.14.308+6
Debianlinux/linux_kernel< 5.10.178-1+3
CVEListV5linux/linux08c3e06a5eb27d43b712adef18379f8464425e7166616eed76dfa6f3e442907760325a023c6da7e2+8
debiandebian/linux< linux 6.1.20-1 (bookworm)

🔴Vulnerability Details

3
GHSA
GHSA-j7q4-rfmc-c75r: In the Linux kernel, the following vulnerability has been resolved: mfd: pcf50633-adc: Fix potential memleak in pcf50633_adc_async_read() `req` is a2025-10-22
OSV
CVE-2023-53724: In the Linux kernel, the following vulnerability has been resolved: mfd: pcf50633-adc: Fix potential memleak in pcf50633_adc_async_read() `req` is all2025-10-22
OSV
mfd: pcf50633-adc: Fix potential memleak in pcf50633_adc_async_read()2025-10-22

📋Vendor Advisories

2
Red Hat
kernel: mfd: pcf50633-adc: Fix potential memleak in pcf50633_adc_async_read()2025-10-22
Debian
CVE-2023-53724: linux - In the Linux kernel, the following vulnerability has been resolved: mfd: pcf506...2023