CVE-2023-54297Out-of-bounds Write in Linux

7 documents6 sources
Severity
N/A
No vector
EPSS
0.0%
top 92.73%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 30

Description

In the Linux kernel, the following vulnerability has been resolved: btrfs: zoned: fix memory leak after finding block group with super blocks At exclude_super_stripes(), if we happen to find a block group that has super blocks mapped to it and we are on a zoned filesystem, we error out as this is not supposed to happen, indicating either a bug or maybe some memory corruption for example. However we are exiting the function without freeing the memory allocated for the logical address of the sup

Affected Packages4 packages

Linuxlinux/linux_kernel5.11.05.15.123+2
Debianlinux/linux_kernel< 6.1.52-1+2
CVEListV5linux/linux12659251ca5df05a484eb122c2c34c18d84e797cab80a901f8daca07c4a54af0ab0de745c9918294+4
debiandebian/linux< linux 6.1.52-1 (bookworm)

🔴Vulnerability Details

3
OSV
CVE-2023-54297: In the Linux kernel, the following vulnerability has been resolved: btrfs: zoned: fix memory leak after finding block group with super blocks At exclu2025-12-30
OSV
btrfs: zoned: fix memory leak after finding block group with super blocks2025-12-30
GHSA
GHSA-pg5c-ggpq-f3pm: In the Linux kernel, the following vulnerability has been resolved: btrfs: zoned: fix memory leak after finding block group with super blocks At exc2025-12-30

📋Vendor Advisories

2
Red Hat
kernel: btrfs: zoned: fix memory leak after finding block group with super blocks2025-12-30
Debian
CVE-2023-54297: linux - In the Linux kernel, the following vulnerability has been resolved: btrfs: zone...2023

🕵️Threat Intelligence

1
Wiz
CVE-2023-54297 Impact, Exploitability, and Mitigation Steps | Wiz