ZeroHour

CVE-2023-53670

CVSS 3.1
5.5 medium
EPSS
<1%p5
Published
()
Modified
Description

In the Linux kernel, the following vulnerability has been resolved: nvme-core: fix dev_pm_qos memleak Call dev_pm_qos_hide_latency_tolerance() in the error unwind patch to avoid following kmemleak:- blktests (master) # kmemleak-clear; ./check nvme/044; blktests (master) # kmemleak-scan ; kmemleak-show nvme/044 (Test bi-directional authentication) [passed] runtime 2.111s ... 2.124s unreferenced object 0xffff888110c46240 (size 96): comm "nvme", pid 33461, jiffies 4345365353 (age 75.586s) hex dump (first 32 bytes): 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ backtrace: [ ] kmalloc_trace+0x25/0x90 [ ] dev_pm_qos_update_user_latency_tolerance+0x6f/0x100 [ ] nvme_init_ctrl+0x38e/0x410 [nvme_core] [ ] 0xffffffffc05e88b3 [ ] 0xffffffffc05744cb [ ] vfs_write+0xc5/0x3c0 [ ] ksys_write+0x5f/0xe0 [ ] do_syscall_64+0x3b/0x90 [ ] entry_SYSCALL_64_after_hwframe+0x72/0xdc

Vendors
linux
Products
linux kernel
Weakness
CWE-401
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.