CVE-2023-53746
published 2025-12-08CVE-2023-53746: In the Linux kernel, the following vulnerability has been resolved: s390/vfio-ap: fix memory leak in vfio_ap device driver The device release callback function…
PriorityP422low5.5
EPSS
0.19%
8.5th percentile
In the Linux kernel, the following vulnerability has been resolved:
s390/vfio-ap: fix memory leak in vfio_ap device driver
The device release callback function invoked to release the matrix device
uses the dev_get_drvdata(device *dev) function to retrieve the
pointer to the vfio_matrix_dev object in order to free its storage. The
problem is, this object is not stored as drvdata with the device; since the
kfree function will accept a NULL pointer, the memory for the
vfio_matrix_dev object is never freed.
Since the device being released is contained within the vfio_matrix_dev
object, the container_of macro will be used to retrieve its pointer.
Affected
17 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 6.1.25-1 (bookworm) | linux 6.1.25-1 (bookworm) |
| linux | linux | — | — |
| linux | linux | >= 1fde573413b549d52183382e639c1d6ce88f5959 < 5195de1d5f66b276683240a896783f7f43c4f664 | 5195de1d5f66b276683240a896783f7f43c4f664 |
| linux | linux | >= 1fde573413b549d52183382e639c1d6ce88f5959 < ee17dea3072dec0bc34399a32fa884e26342e4ea | ee17dea3072dec0bc34399a32fa884e26342e4ea |
| linux | linux | >= 1fde573413b549d52183382e639c1d6ce88f5959 < aa2bff25e9bb10c935c7ffe3d5f5975bdccb1749 | aa2bff25e9bb10c935c7ffe3d5f5975bdccb1749 |
| linux | linux | >= 1fde573413b549d52183382e639c1d6ce88f5959 < 6a40fda14b4be3e38f03cc42ffd4efbc64fb3e67 | 6a40fda14b4be3e38f03cc42ffd4efbc64fb3e67 |
| linux | linux | >= 1fde573413b549d52183382e639c1d6ce88f5959 < 7b6a02f5bf15931464c79dfd487c57f76aae3496 | 7b6a02f5bf15931464c79dfd487c57f76aae3496 |
| linux | linux | >= 1fde573413b549d52183382e639c1d6ce88f5959 < 8f8cf767589f2131ae5d40f3758429095c701c84 | 8f8cf767589f2131ae5d40f3758429095c701c84 |
| linux | linux_kernel | >= 0 < 5.10.178-1 | 5.10.178-1 |
| linux | linux_kernel | >= 0 < 6.1.25-1 | 6.1.25-1 |
| linux | linux_kernel | >= 0 < 6.1.25-1 | 6.1.25-1 |
| linux | linux_kernel | >= 0 < 6.1.25-1 | 6.1.25-1 |
| linux | linux_kernel | >= 4.20.0 < 5.4.240 | 5.4.240 |
| linux | linux_kernel | >= 5.11.0 < 5.15.106 | 5.15.106 |
| linux | linux_kernel | >= 5.16.0 < 6.1.23 | 6.1.23 |
| linux | linux_kernel | >= 5.5.0 < 5.10.177 | 5.10.177 |
| linux | linux_kernel | >= 6.2.0 < 6.2.10 | 6.2.10 |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
s390/vfio-ap: fix memory leak in vfio_ap device driver
osv·2025-12-08
CVE-2023-53746 s390/vfio-ap: fix memory leak in vfio_ap device driver
s390/vfio-ap: fix memory leak in vfio_ap device driver
In the Linux kernel, the following vulnerability has been resolved:
s390/vfio-ap: fix memory leak in vfio_ap device driver
The device release callback function invoked to release the matrix device
uses the dev_get_drvdata(device *dev) function to retrieve the
pointer to the vfio_matrix_dev object in order to free its storage. The
problem is, this object is not stored as drvdata with the device; since the
kfree function will accept a NULL pointer, the memory for the
vfio_matrix_dev object is never freed.
Since the device being released is contained within the vfio_matrix_dev
object, the container_of macro will be used to retrieve its pointer.
GHSA
GHSA-pfq8-pr42-5qc2: In the Linux kernel, the following vulnerability has been resolved:
s390/vfio-ap: fix memory leak in vfio_ap device driver
The device release callba
ghsa_unreviewed·2025-12-08
CVE-2023-53746 GHSA-pfq8-pr42-5qc2: In the Linux kernel, the following vulnerability has been resolved:
s390/vfio-ap: fix memory leak in vfio_ap device driver
The device release callba
In the Linux kernel, the following vulnerability has been resolved:
s390/vfio-ap: fix memory leak in vfio_ap device driver
The device release callback function invoked to release the matrix device
uses the dev_get_drvdata(device *dev) function to retrieve the
pointer to the vfio_matrix_dev object in order to free its storage. The
problem is, this object is not stored as drvdata with the device; since the
kfree function will accept a NULL pointer, the memory for the
vfio_matrix_dev object is never freed.
Since the device being released is contained within the vfio_matrix_dev
object, the container_of macro will be used to retrieve its pointer.
OSV
CVE-2023-53746: In the Linux kernel, the following vulnerability has been resolved: s390/vfio-ap: fix memory leak in vfio_ap device driver The device release callback
osv·2025-12-08
CVE-2023-53746 CVE-2023-53746: In the Linux kernel, the following vulnerability has been resolved: s390/vfio-ap: fix memory leak in vfio_ap device driver The device release callback
In the Linux kernel, the following vulnerability has been resolved: s390/vfio-ap: fix memory leak in vfio_ap device driver The device release callback function invoked to release the matrix device uses the dev_get_drvdata(device *dev) function to retrieve the pointer to the vfio_matrix_dev object in order to free its storage. The problem is, this object is not stored as drvdata with the device; since the kfree function will accept a NULL pointer, the memory for the vfio_matrix_dev object is never freed. Since the device being released is contained within the vfio_matrix_dev object, the container_of macro will be used to retrieve its pointer.
Red Hat
kernel: s390/vfio-ap: fix memory leak in vfio_ap device driver
vendor_redhat·2025-12-08·CVSS 5.5
CVE-2023-53746 [LOW] CWE-763 kernel: s390/vfio-ap: fix memory leak in vfio_ap device driver
kernel: s390/vfio-ap: fix memory leak in vfio_ap device driver
In the Linux kernel, the following vulnerability has been resolved:
s390/vfio-ap: fix memory leak in vfio_ap device driver
The device release callback function invoked to release the matrix device
uses the dev_get_drvdata(device *dev) function to retrieve the
pointer to the vfio_matrix_dev object in order to free its storage. The
problem is, this object is not stored as drvdata with the device; since the
kfree function will accept a NULL pointer, the memory for the
vfio_matrix_dev object is never freed.
Since the device being released is contained within the vfio_matrix_dev
object, the container_of macro will be used to retrieve its pointer.
In the s390 VFIO-AP driver, memory allocated for the vfio_matrix_dev structure is nev
Debian
CVE-2023-53746: linux - In the Linux kernel, the following vulnerability has been resolved: s390/vfio-a...
vendor_debian·2023
CVE-2023-53746 CVE-2023-53746: linux - In the Linux kernel, the following vulnerability has been resolved: s390/vfio-a...
In the Linux kernel, the following vulnerability has been resolved: s390/vfio-ap: fix memory leak in vfio_ap device driver The device release callback function invoked to release the matrix device uses the dev_get_drvdata(device *dev) function to retrieve the pointer to the vfio_matrix_dev object in order to free its storage. The problem is, this object is not stored as drvdata with the device; since the kfree function will accept a NULL pointer, the memory for the vfio_matrix_dev object is never freed. Since the device being released is contained within the vfio_matrix_dev object, the container_of macro will be used to retrieve its pointer.
Scope: local
bookworm: resolved (fixed in 6.1.25-1)
bullseye: resolved (fixed in 5.10.178-1)
forky: resolved (fixed in 6.1.25-1)
sid: resolved (fixed
No detection rules found.
No public exploits indexed.
https://git.kernel.org/stable/c/5195de1d5f66b276683240a896783f7f43c4f664https://git.kernel.org/stable/c/6a40fda14b4be3e38f03cc42ffd4efbc64fb3e67https://git.kernel.org/stable/c/7b6a02f5bf15931464c79dfd487c57f76aae3496https://git.kernel.org/stable/c/8f8cf767589f2131ae5d40f3758429095c701c84https://git.kernel.org/stable/c/aa2bff25e9bb10c935c7ffe3d5f5975bdccb1749https://git.kernel.org/stable/c/ee17dea3072dec0bc34399a32fa884e26342e4ea
2025-12-08
Published