CVE-2023-54205
published 2025-12-30CVE-2023-54205: In the Linux kernel, the following vulnerability has been resolved: pinctrl: stm32: Fix refcount leak in stm32_pctrl_get_irq_domain of_irq_find_parent()…
PriorityP418
EPSS
0.18%
7.7th percentile
In the Linux kernel, the following vulnerability has been resolved:
pinctrl: stm32: Fix refcount leak in stm32_pctrl_get_irq_domain
of_irq_find_parent() returns a node pointer with refcount incremented,
We should use of_node_put() on it when not needed anymore.
Add missing of_node_put() to avoid refcount leak.
Affected
17 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 6.1.20-1 (bookworm) | linux 6.1.20-1 (bookworm) |
| linux | linux | — | — |
| linux | linux | >= d86f4d71e42a9fa1866f030074e54d7571d16ec1 < 95ab6d7905ebb52dc2ed6357c38e536753824068 | 95ab6d7905ebb52dc2ed6357c38e536753824068 |
| linux | linux | >= d86f4d71e42a9fa1866f030074e54d7571d16ec1 < 8ab860dd8717a7e4a143988885fea0d7e5a9412e | 8ab860dd8717a7e4a143988885fea0d7e5a9412e |
| linux | linux | >= d86f4d71e42a9fa1866f030074e54d7571d16ec1 < af54707c0ccab52b3d532402436ea101011a9299 | af54707c0ccab52b3d532402436ea101011a9299 |
| linux | linux | >= d86f4d71e42a9fa1866f030074e54d7571d16ec1 < 601be03fa8b81747a154bdef9b559411a5b921e8 | 601be03fa8b81747a154bdef9b559411a5b921e8 |
| linux | linux | >= d86f4d71e42a9fa1866f030074e54d7571d16ec1 < 9ae053d1eb87875d56f95b6a123a69827225a70e | 9ae053d1eb87875d56f95b6a123a69827225a70e |
| linux | linux | >= d86f4d71e42a9fa1866f030074e54d7571d16ec1 < dcef18c8ac40aa85bb339f64c1dd31dd458b06fb | dcef18c8ac40aa85bb339f64c1dd31dd458b06fb |
| linux | linux_kernel | >= 0 < 5.10.178-1 | 5.10.178-1 |
| linux | linux_kernel | >= 0 < 6.1.20-1 | 6.1.20-1 |
| linux | linux_kernel | >= 0 < 6.1.20-1 | 6.1.20-1 |
| linux | linux_kernel | >= 0 < 6.1.20-1 | 6.1.20-1 |
| linux | linux_kernel | >= 5.11.0 < 5.15.99 | 5.15.99 |
| linux | linux_kernel | >= 5.16.0 < 6.1.16 | 6.1.16 |
| linux | linux_kernel | >= 5.2.0 < 5.4.235 | 5.4.235 |
| linux | linux_kernel | >= 5.5.0 < 5.10.173 | 5.10.173 |
| linux | linux_kernel | >= 6.2.0 < 6.2.3 | 6.2.3 |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-h58x-q2v9-x289: In the Linux kernel, the following vulnerability has been resolved:
pinctrl: stm32: Fix refcount leak in stm32_pctrl_get_irq_domain
of_irq_find_pare
ghsa_unreviewed·2025-12-30
CVE-2023-54205 GHSA-h58x-q2v9-x289: In the Linux kernel, the following vulnerability has been resolved:
pinctrl: stm32: Fix refcount leak in stm32_pctrl_get_irq_domain
of_irq_find_pare
In the Linux kernel, the following vulnerability has been resolved:
pinctrl: stm32: Fix refcount leak in stm32_pctrl_get_irq_domain
of_irq_find_parent() returns a node pointer with refcount incremented,
We should use of_node_put() on it when not needed anymore.
Add missing of_node_put() to avoid refcount leak.
OSV
pinctrl: stm32: Fix refcount leak in stm32_pctrl_get_irq_domain
osv·2025-12-30
CVE-2023-54205 pinctrl: stm32: Fix refcount leak in stm32_pctrl_get_irq_domain
pinctrl: stm32: Fix refcount leak in stm32_pctrl_get_irq_domain
In the Linux kernel, the following vulnerability has been resolved:
pinctrl: stm32: Fix refcount leak in stm32_pctrl_get_irq_domain
of_irq_find_parent() returns a node pointer with refcount incremented,
We should use of_node_put() on it when not needed anymore.
Add missing of_node_put() to avoid refcount leak.
OSV
CVE-2023-54205: In the Linux kernel, the following vulnerability has been resolved: pinctrl: stm32: Fix refcount leak in stm32_pctrl_get_irq_domain of_irq_find_parent
osv·2025-12-30
CVE-2023-54205 CVE-2023-54205: In the Linux kernel, the following vulnerability has been resolved: pinctrl: stm32: Fix refcount leak in stm32_pctrl_get_irq_domain of_irq_find_parent
In the Linux kernel, the following vulnerability has been resolved: pinctrl: stm32: Fix refcount leak in stm32_pctrl_get_irq_domain of_irq_find_parent() returns a node pointer with refcount incremented, We should use of_node_put() on it when not needed anymore. Add missing of_node_put() to avoid refcount leak.
Red Hat
kernel: pinctrl: stm32: Fix refcount leak in stm32_pctrl_get_irq_domain
vendor_redhat·2025-12-30
CVE-2023-54205 kernel: pinctrl: stm32: Fix refcount leak in stm32_pctrl_get_irq_domain
kernel: pinctrl: stm32: Fix refcount leak in stm32_pctrl_get_irq_domain
In the Linux kernel, the following vulnerability has been resolved:
pinctrl: stm32: Fix refcount leak in stm32_pctrl_get_irq_domain
of_irq_find_parent() returns a node pointer with refcount incremented,
We should use of_node_put() on it when not needed anymore.
Add missing of_node_put() to avoid refcount leak.
Package: kernel (Red Hat Enterprise Linux 10) - Not affected
Package: kernel (Red Hat Enterprise Linux 6) - Not affected
Package: kernel (Red Hat Enterprise Linux 7) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 7) - Not affected
Package: kernel (Red Hat Enterprise Linux 8) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 8) - Not affected
Package: kernel (Red Hat Enterprise Linux
Debian
CVE-2023-54205: linux - In the Linux kernel, the following vulnerability has been resolved: pinctrl: st...
vendor_debian·2023
CVE-2023-54205 CVE-2023-54205: linux - In the Linux kernel, the following vulnerability has been resolved: pinctrl: st...
In the Linux kernel, the following vulnerability has been resolved: pinctrl: stm32: Fix refcount leak in stm32_pctrl_get_irq_domain of_irq_find_parent() returns a node pointer with refcount incremented, We should use of_node_put() on it when not needed anymore. Add missing of_node_put() to avoid refcount leak.
Scope: local
bookworm: resolved (fixed in 6.1.20-1)
bullseye: resolved (fixed in 5.10.178-1)
forky: resolved (fixed in 6.1.20-1)
sid: resolved (fixed in 6.1.20-1)
trixie: resolved (fixed in 6.1.20-1)
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2023-54205 kernel: pinctrl: stm32: Fix refcount leak in stm32_pctrl_get_irq_domain
bugzilla·2025-12-30
CVE-2023-54205 CVE-2023-54205 kernel: pinctrl: stm32: Fix refcount leak in stm32_pctrl_get_irq_domain
CVE-2023-54205 kernel: pinctrl: stm32: Fix refcount leak in stm32_pctrl_get_irq_domain
In the Linux kernel, the following vulnerability has been resolved:
pinctrl: stm32: Fix refcount leak in stm32_pctrl_get_irq_domain
of_irq_find_parent() returns a node pointer with refcount incremented,
We should use of_node_put() on it when not needed anymore.
Add missing of_node_put() to avoid refcount leak.
Discussion:
Upstream advisory:
https://lore.kernel.org/linux-cve-announce/2025123022-CVE-2023-54205-966b@gregkh/T
Wiz
CVE-2023-54205 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz
CVE-2023-54205 CVE-2023-54205 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2023-54205 :
Linux Kernel vulnerability analysis and mitigation
In the Linux kernel, the following vulnerability has been resolved:
pinctrl: stm32: Fix refcount leak in stm32_pctrl_get_irq_domain
of_irq_find_parent() returns a node pointer with refcount incremented,
We should use of_node_put() on it when not needed anymore.
Add missing of_node_put() to avoid refcount leak.
Source : NVD
Published December 30, 2025
CNA Score N/A
Affected Technologies
Linux Kernel
Linux Debian
Has Public Exploit No
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 10.8
Exploitation Probability (EPSS) N/A
Affected packages and libraries
ocfs2-kmp-default
kernel-devel-rt
Sources
NVD
Debian 11, 12, 13, 14 Has Fix Added
https://git.kernel.org/stable/c/601be03fa8b81747a154bdef9b559411a5b921e8https://git.kernel.org/stable/c/8ab860dd8717a7e4a143988885fea0d7e5a9412ehttps://git.kernel.org/stable/c/95ab6d7905ebb52dc2ed6357c38e536753824068https://git.kernel.org/stable/c/9ae053d1eb87875d56f95b6a123a69827225a70ehttps://git.kernel.org/stable/c/af54707c0ccab52b3d532402436ea101011a9299https://git.kernel.org/stable/c/dcef18c8ac40aa85bb339f64c1dd31dd458b06fb
2025-12-30
Published