CVE-2023-53687
In the Linux kernel, the following vulnerability has been resolved: tty: serial: samsung_tty: Fix a memory leak in s3c24xx_serial_getclk() when iterating clk When the best clk is searched, we iterate over all possible clk.
Does this matter?
Lower severity and a low EPSS score (0.14%). Track it; it rarely justifies an emergency change on its own.
Description
In the Linux kernel, the following vulnerability has been resolved: tty: serial: samsung_tty: Fix a memory leak in s3c24xx_serial_getclk() when iterating clk When the best clk is searched, we iterate over all possible clk. If we find a better match, the previous one, if any, needs to be freed. If a better match has already been found, we still need to free the new one, otherwise it leaks.
- CVSS 3.1
- 5.5 MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
- EPSS
- 0.14% probability · 4th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-401
- Affected
- linux/linux kernel
- Source
- 416baaa9-dc9f-4396-8d5f-8c081fb06d67
References
- https://git.kernel.org/stable/c/01dd8a43a84616c830782166ba3cceb01ad95363Patch
- https://git.kernel.org/stable/c/1962717c4649e026a4252fe6625175affd28a593Patch
- https://git.kernel.org/stable/c/1f426293fef1c13742b2a685bf7e363f51f6ee03Patch
- https://git.kernel.org/stable/c/46574e5a0a2aee41e6ebb979cfe1dbaea8693e16Patch
- https://git.kernel.org/stable/c/832e231cff476102e8204a9e7bddfe5c6154a375Patch
- https://git.kernel.org/stable/c/933e5b2998bc3a527d15efbf1e97c9e63297aa3cPatch
- https://git.kernel.org/stable/c/9dd8091959bc41fee51d0827276a2b982e84adf0Patch
- https://git.kernel.org/stable/c/f0bf102ef9b05d7294bd8d506755465f6867d944Patch
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.