cbcvebase.
CVE-2023-54154
published 2025-12-24

CVE-2023-54154: In the Linux kernel, the following vulnerability has been resolved: scsi: target: core: Fix target_cmd_counter leak The target_cmd_counter struct allocated via…

PriorityP419low5.5
EPSS
0.18%
7.4th percentile
In the Linux kernel, the following vulnerability has been resolved: scsi: target: core: Fix target_cmd_counter leak The target_cmd_counter struct allocated via target_alloc_cmd_counter() is never freed, resulting in leaks across various transport types, e.g.: unreferenced object 0xffff88801f920120 (size 96): comm "sh", pid 102, jiffies 4294892535 (age 713.412s) hex dump (first 32 bytes): 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 00 00 00 00 00 00 00 00 38 01 92 1f 80 88 ff ff ........8....... backtrace: [] kmalloc_trace+0x11/0x20 [] target_alloc_cmd_counter+0x17/0x90 [target_core_mod] [] target_setup_session+0x2d/0x140 [target_core_mod] [] tcm_loop_tpg_nexus_store+0x19b/0x350 [tcm_loop] [] configfs_write_iter+0xb1/0x120 [] vfs_write+0x2e4/0x3c0 [] ksys_write+0x80/0xb0 [] do_syscall_64+0x42/0x90 [] entry_SYSCALL_64_after_hwframe+0x6e/0xd8 Free the structure alongside the corresponding iscsit_conn / se_sess parent.

Affected

15 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.55-1 (bookworm)linux 6.1.55-1 (bookworm)
linuxlinux
linuxlinux
linuxlinux
linuxlinux>= 6.1.28 < 6.1.556.1.55
linuxlinux>= 6.2.15 < 6.36.3
linuxlinux>= 6.3.2 < 6.46.4
linuxlinux>= 76b77646f17118f5babe93c032e6b7a53bbde3b9 < 1cd41d1669bcbc5052afa897f85608a62ff3fb301cd41d1669bcbc5052afa897f85608a62ff3fb30
linuxlinux>= becd9be6069e7b183c084f460f0eb363e43cc487 < f84639c5ac5f4f95b3992da1af4ff382ebf2e819f84639c5ac5f4f95b3992da1af4ff382ebf2e819
linuxlinux>= becd9be6069e7b183c084f460f0eb363e43cc487 < d14e3e553e05cb763964c991fe6acb0a6a1c6f9cd14e3e553e05cb763964c991fe6acb0a6a1c6f9c
linuxlinux_kernel>= 0 < 6.1.55-16.1.55-1
linuxlinux_kernel>= 0 < 6.5.6-16.5.6-1
linuxlinux_kernel>= 0 < 6.5.6-16.5.6-1
linuxlinux_kernel>= 0 < 6.1.556.1.55
linuxlinux_kernel>= 6.2.0 < 6.5.56.5.5
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.