CVE-2023-54307Missing Release of Memory after Effective Lifetime in Linux

7 documents6 sources
Severity
5.3MEDIUM
No vector
EPSS
0.0%
top 89.30%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 30

Description

In the Linux kernel, the following vulnerability has been resolved: ptp_qoriq: fix memory leak in probe() Smatch complains that: drivers/ptp/ptp_qoriq.c ptp_qoriq_probe() warn: 'base' from ioremap() not released. Fix this by revising the parameter from 'ptp_qoriq->base' to 'base'. This is only a bug if ptp_qoriq_init() returns on the first -ENODEV error path. For other error paths ptp_qoriq->base and base are the same. And this change makes the code more readable.

Affected Packages4 packages

Linuxlinux/linux_kernel5.2.05.4.240+4
Debianlinux/linux_kernel< 5.10.178-1+3
CVEListV5linux/linux7f4399ba405b6201fb318b43091703a34b1489ab46c4993a1514eea3bbc7147d0c81c23cc06c6bed+6
debiandebian/linux< linux 6.1.25-1 (bookworm)

🔴Vulnerability Details

3
OSV
CVE-2023-54307: In the Linux kernel, the following vulnerability has been resolved: ptp_qoriq: fix memory leak in probe() Smatch complains that: drivers/ptp/ptp_qoriq2025-12-30
OSV
ptp_qoriq: fix memory leak in probe()2025-12-30
GHSA
GHSA-36j9-v89w-79c6: In the Linux kernel, the following vulnerability has been resolved: ptp_qoriq: fix memory leak in probe() Smatch complains that: drivers/ptp/ptp_qor2025-12-30

📋Vendor Advisories

2
Red Hat
kernel: ptp_qoriq: fix memory leak in probe()2025-12-30
Debian
CVE-2023-54307: linux - In the Linux kernel, the following vulnerability has been resolved: ptp_qoriq: ...2023

🕵️Threat Intelligence

1
Wiz
CVE-2023-54307 Impact, Exploitability, and Mitigation Steps | Wiz