VulnerabilityModified
CVE-2023-53290
In the Linux kernel, the following vulnerability has been resolved: samples/bpf: Fix fout leak in hbm's run_bpf_prog Fix fout being fopen'ed but then not subsequently fclose'd.
MEDIUM 5.5EPSS 0.14%
Does this matter?
Lower severity and a low EPSS score (0.14%). Track it; it rarely justifies an emergency change on its own.
Description
In the Linux kernel, the following vulnerability has been resolved: samples/bpf: Fix fout leak in hbm's run_bpf_prog Fix fout being fopen'ed but then not subsequently fclose'd. In the affected branch, fout is otherwise going out of scope.
- CVSS 3.1
- 5.5 MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
- EPSS
- 0.14% probability · 4th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-401
- Affected
- linux/linux kernel
- Source
- 416baaa9-dc9f-4396-8d5f-8c081fb06d67
References
- https://git.kernel.org/stable/c/23acb14af1914010dd0aae1bbb7fab28bf518b8ePatch
- https://git.kernel.org/stable/c/7560ed6592ff4077528c239c71e91b19de985b97Patch
- https://git.kernel.org/stable/c/a7ec2f424f6edad34651137783a0a59eca9aa37ePatch
- https://git.kernel.org/stable/c/e3e6e252d74f20f6fc610c7fef3ae7dda0109a6fPatch
- https://git.kernel.org/stable/c/edf37bc8b03d3f948e679b2fd2d14464495f5d1bPatch
- https://git.kernel.org/stable/c/f2065b8b0a215bc6aa061287a2e3d9eab2446422Patch
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.