CVE-2023-54191Missing Release of Resource after Effective Lifetime in Linux

Severity
5.5MEDIUM
No vector
EPSS
0.0%
top 92.35%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 30

Description

In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7996: fix memory leak in mt7996_mcu_exit Always purge mcu skb queues in mt7996_mcu_exit routine even if mt7996_firmware_state fails.

Affected Packages3 packages

Linuxlinux/linux_kernel6.2.06.2.3
CVEListV5linux/linux98686cd21624c75a043e96812beadddf4f6f48e5b539d35e13e5d6b3dca76271261106b2356aa64c+2
debiandebian/linux

🔴Vulnerability Details

3
OSV
CVE-2023-54191: In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7996: fix memory leak in mt7996_mcu_exit Always purge mcu skb queues2025-12-30
OSV
wifi: mt76: mt7996: fix memory leak in mt7996_mcu_exit2025-12-30
GHSA
GHSA-5gfv-jw63-2f46: In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7996: fix memory leak in mt7996_mcu_exit Always purge mcu skb queu2025-12-30

📋Vendor Advisories

2
Red Hat
kernel: Linux kernel: Memory leak in mt76 Wi-Fi driver leads to Denial of Service2025-12-30
Debian
CVE-2023-54191: linux - In the Linux kernel, the following vulnerability has been resolved: wifi: mt76:...2023

🕵️Threat Intelligence

1
Wiz
CVE-2023-54191 Impact, Exploitability, and Mitigation Steps | Wiz