cbcvebase.
CVE-2023-54205
published 2025-12-30

CVE-2023-54205: In the Linux kernel, the following vulnerability has been resolved: pinctrl: stm32: Fix refcount leak in stm32_pctrl_get_irq_domain of_irq_find_parent()…

PriorityP418
EPSS
0.18%
7.7th percentile
In the Linux kernel, the following vulnerability has been resolved: pinctrl: stm32: Fix refcount leak in stm32_pctrl_get_irq_domain of_irq_find_parent() returns a node pointer with refcount incremented, We should use of_node_put() on it when not needed anymore. Add missing of_node_put() to avoid refcount leak.

Affected

17 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.20-1 (bookworm)linux 6.1.20-1 (bookworm)
linuxlinux
linuxlinux>= d86f4d71e42a9fa1866f030074e54d7571d16ec1 < 95ab6d7905ebb52dc2ed6357c38e53675382406895ab6d7905ebb52dc2ed6357c38e536753824068
linuxlinux>= d86f4d71e42a9fa1866f030074e54d7571d16ec1 < 8ab860dd8717a7e4a143988885fea0d7e5a9412e8ab860dd8717a7e4a143988885fea0d7e5a9412e
linuxlinux>= d86f4d71e42a9fa1866f030074e54d7571d16ec1 < af54707c0ccab52b3d532402436ea101011a9299af54707c0ccab52b3d532402436ea101011a9299
linuxlinux>= d86f4d71e42a9fa1866f030074e54d7571d16ec1 < 601be03fa8b81747a154bdef9b559411a5b921e8601be03fa8b81747a154bdef9b559411a5b921e8
linuxlinux>= d86f4d71e42a9fa1866f030074e54d7571d16ec1 < 9ae053d1eb87875d56f95b6a123a69827225a70e9ae053d1eb87875d56f95b6a123a69827225a70e
linuxlinux>= d86f4d71e42a9fa1866f030074e54d7571d16ec1 < dcef18c8ac40aa85bb339f64c1dd31dd458b06fbdcef18c8ac40aa85bb339f64c1dd31dd458b06fb
linuxlinux_kernel>= 0 < 5.10.178-15.10.178-1
linuxlinux_kernel>= 0 < 6.1.20-16.1.20-1
linuxlinux_kernel>= 0 < 6.1.20-16.1.20-1
linuxlinux_kernel>= 0 < 6.1.20-16.1.20-1
linuxlinux_kernel>= 5.11.0 < 5.15.995.15.99
linuxlinux_kernel>= 5.16.0 < 6.1.166.1.16
linuxlinux_kernel>= 5.2.0 < 5.4.2355.4.235
linuxlinux_kernel>= 5.5.0 < 5.10.1735.10.173
linuxlinux_kernel>= 6.2.0 < 6.2.36.2.3
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.