cbcvebase.
CVE-2023-53852
published 2025-12-09

CVE-2023-53852: In the Linux kernel, the following vulnerability has been resolved: nvme-core: fix memory leak in dhchap_secret_store Free dhchap_secret in…

PriorityP420low5.5
EPSS
0.22%
13.2th percentile
In the Linux kernel, the following vulnerability has been resolved: nvme-core: fix memory leak in dhchap_secret_store Free dhchap_secret in nvme_ctrl_dhchap_secret_store() before we return fix following kmemleack:- unreferenced object 0xffff8886376ea800 (size 64): comm "check", pid 22048, jiffies 4344316705 (age 92.199s) hex dump (first 32 bytes): 44 48 48 43 2d 31 3a 30 30 3a 6e 78 72 35 4b 67 DHHC-1:00:nxr5Kg 75 58 34 75 6f 41 78 73 4a 61 34 63 2f 68 75 4c uX4uoAxsJa4c/huL backtrace: [] __kmalloc+0x4b/0x130 [] nvme_ctrl_dhchap_secret_store+0x8f/0x160 [nvme_core] [] kernfs_fop_write_iter+0x12b/0x1c0 [] vfs_write+0x2ba/0x3c0 [] ksys_write+0x5f/0xe0 [] do_syscall_64+0x3b/0x90 [] entry_SYSCALL_64_after_hwframe+0x72/0xdc unreferenced object 0xffff8886376eaf00 (size 64): comm "check", pid 22048, jiffies 4344316736 (age 92.168s) hex dump (first 32 bytes): 44 48 48 43 2d 31 3a 30 30 3a 6e 78 72 35 4b 67 DHHC-1:00:nxr5Kg 75 58 34 75 6f 41 78 73 4a 61 34 63 2f 68 75 4c uX4uoAxsJa4c/huL backtrace: [] __kmalloc+0x4b/0x130 [] nvme_ctrl_dhchap_secret_store+0x8f/0x160 [nvme_core] [] kernfs_fop_write_iter+0x12b/0x1c0 [] vfs_write+0x2ba/0x3c0 [] ksys_write+0x5f/0xe0 [] do_syscall_64+0x3b/0x90 [] entry_SYSCALL_64_after_hwframe+0x72/0xdc

Affected

12 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.52-1 (bookworm)linux 6.1.52-1 (bookworm)
linuxlinux
linuxlinux>= f50fff73d620cd6e8f48bc58d4f1c944615a3fea < 2e9b141307554521d60fecf6bf1d2edc8dd0181d2e9b141307554521d60fecf6bf1d2edc8dd0181d
linuxlinux>= f50fff73d620cd6e8f48bc58d4f1c944615a3fea < c41ac086d2abaf7527a5685f9c0a1c209ab7e0aac41ac086d2abaf7527a5685f9c0a1c209ab7e0aa
linuxlinux>= f50fff73d620cd6e8f48bc58d4f1c944615a3fea < 6a5eda5017959541ab82c5d56bcf784b8294e2986a5eda5017959541ab82c5d56bcf784b8294e298
linuxlinux>= f50fff73d620cd6e8f48bc58d4f1c944615a3fea < a836ca33c5b07d34dd5347af9f64d25651d12674a836ca33c5b07d34dd5347af9f64d25651d12674
linuxlinux_kernel>= 0 < 6.1.52-16.1.52-1
linuxlinux_kernel>= 0 < 6.4.4-16.4.4-1
linuxlinux_kernel>= 0 < 6.4.4-16.4.4-1
linuxlinux_kernel>= 6.0.0 < 6.1.396.1.39
linuxlinux_kernel>= 6.2.0 < 6.3.136.3.13
linuxlinux_kernel>= 6.4.0 < 6.4.46.4.4
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.