cbcvebase.
CVE-2023-54297
published 2025-12-30

CVE-2023-54297: In the Linux kernel, the following vulnerability has been resolved: btrfs: zoned: fix memory leak after finding block group with super blocks At…

PriorityP419
EPSS
0.17%
7.1th percentile
In the Linux kernel, the following vulnerability has been resolved: btrfs: zoned: fix memory leak after finding block group with super blocks At exclude_super_stripes(), if we happen to find a block group that has super blocks mapped to it and we are on a zoned filesystem, we error out as this is not supposed to happen, indicating either a bug or maybe some memory corruption for example. However we are exiting the function without freeing the memory allocated for the logical address of the super blocks. Fix this by freeing the logical address.

Affected

12 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.52-1 (bookworm)linux 6.1.52-1 (bookworm)
linuxlinux
linuxlinux>= 12659251ca5df05a484eb122c2c34c18d84e797c < ab80a901f8daca07c4a54af0ab0de745c9918294ab80a901f8daca07c4a54af0ab0de745c9918294
linuxlinux>= 12659251ca5df05a484eb122c2c34c18d84e797c < c35ea606196243063e63785918c7c8fe27c45798c35ea606196243063e63785918c7c8fe27c45798
linuxlinux>= 12659251ca5df05a484eb122c2c34c18d84e797c < cca627afb463a4b47721eac017516ba200de85c3cca627afb463a4b47721eac017516ba200de85c3
linuxlinux>= 12659251ca5df05a484eb122c2c34c18d84e797c < f1a07c2b4e2c473ec322b8b9ece071b8c88a3512f1a07c2b4e2c473ec322b8b9ece071b8c88a3512
linuxlinux_kernel>= 0 < 6.1.52-16.1.52-1
linuxlinux_kernel>= 0 < 6.4.11-16.4.11-1
linuxlinux_kernel>= 0 < 6.4.11-16.4.11-1
linuxlinux_kernel>= 5.11.0 < 5.15.1235.15.123
linuxlinux_kernel>= 5.16.0 < 6.1.426.1.42
linuxlinux_kernel>= 6.2.0 < 6.4.76.4.7
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.