CVE-2023-53743Missing Release of Resource after Effective Lifetime in Linux

Severity
5.5MEDIUM
No vector
EPSS
0.0%
top 90.17%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 8

Description

In the Linux kernel, the following vulnerability has been resolved: PCI: Free released resource after coalescing release_resource() doesn't actually free the resource or resource list entry so free the resource list entry to avoid a leak.

Affected Packages4 packages

Linuxlinux/linux_kernel6.2.06.4.16+2
Debianlinux/linux_kernel< 6.1.55-1+2
CVEListV5linux/linux465c195e86f3d0ffd2e250c4b78a5a1f11cc1b0a4443f3695d581ad1a55f2ef59259dcd0c52402b3+5
debiandebian/linux< linux 6.1.55-1 (bookworm)

🔴Vulnerability Details

3
OSV
CVE-2023-53743: In the Linux kernel, the following vulnerability has been resolved: PCI: Free released resource after coalescing release_resource() doesn't actually f2025-12-08
GHSA
GHSA-4fgr-37f3-cqrc: In the Linux kernel, the following vulnerability has been resolved: PCI: Free released resource after coalescing release_resource() doesn't actually2025-12-08
OSV
PCI: Free released resource after coalescing2025-12-08

📋Vendor Advisories

2
Red Hat
kernel: Linux kernel: Denial of Service due to PCI resource leak2025-12-08
Debian
CVE-2023-53743: linux - In the Linux kernel, the following vulnerability has been resolved: PCI: Free r...2023