CVE-2023-54112Missing Release of Memory after Effective Lifetime in Linux

7 documents6 sources
Severity
N/A
No vector
EPSS
0.0%
top 89.30%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 24

Description

In the Linux kernel, the following vulnerability has been resolved: kcm: Fix memory leak in error path of kcm_sendmsg() syzbot reported a memory leak like below: BUG: memory leak unreferenced object 0xffff88810b088c00 (size 240): comm "syz-executor186", pid 5012, jiffies 4294943306 (age 13.680s) hex dump (first 32 bytes): 00 89 08 0b 81 88 ff ff 00 00 00 00 00 00 00 00 ................ 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ backtrace: [] __alloc_skb+0x1ef/0x230 net/c

Affected Packages4 packages

Linuxlinux/linux_kernel4.6.04.14.326+6
Debianlinux/linux_kernel< 5.10.197-1+3
CVEListV5linux/linuxab7ac4eb9832e32a09f4e8042705484d2fb0aad38dc7eb757b1652b82725f32e0c89a1e9f6c0e13b+8
debiandebian/linux< linux 6.1.55-1 (bookworm)

🔴Vulnerability Details

3
OSV
kcm: Fix memory leak in error path of kcm_sendmsg()2025-12-24
OSV
CVE-2023-54112: In the Linux kernel, the following vulnerability has been resolved: kcm: Fix memory leak in error path of kcm_sendmsg() syzbot reported a memory leak2025-12-24
GHSA
GHSA-2f8x-cwx7-q35r: In the Linux kernel, the following vulnerability has been resolved: kcm: Fix memory leak in error path of kcm_sendmsg() syzbot reported a memory lea2025-12-24

📋Vendor Advisories

2
Red Hat
kernel: kcm: Fix memory leak in error path of kcm_sendmsg()2025-12-24
Debian
CVE-2023-54112: linux - In the Linux kernel, the following vulnerability has been resolved: kcm: Fix me...2023

🕵️Threat Intelligence

1
Wiz
CVE-2023-54112 Impact, Exploitability, and Mitigation Steps | Wiz