Vulnerability Description
In the Linux kernel, the following vulnerability has been resolved: objtool: Fix memory leak in create_static_call_sections() strdup() allocates memory for key_name. We need to release the memory in the following error paths. Add free() to avoid memory leak.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Linux | Linux Kernel | >= 5.10, < 5.10.173 |
Related Weaknesses (CWE)
References
- https://git.kernel.org/stable/c/3a75866a5ceff5d4fdd5471e06c4c4d03e0298b3Patch
- https://git.kernel.org/stable/c/3da73f102309fe29150e5c35acd20dd82063ff67Patch
- https://git.kernel.org/stable/c/a1368eaea058e451d20ea99ca27e72d9df0d16ddPatch
- https://git.kernel.org/stable/c/a8f63d747bf7c983882a5ea7456a5f84ad3acad5Patch
- https://git.kernel.org/stable/c/d131718d9c45d559951f57c4b88209ca407433c4Patch
FAQ
What is CVE-2023-53423?
CVE-2023-53423 is a vulnerability with a CVSS score of 5.5 (MEDIUM). In the Linux kernel, the following vulnerability has been resolved: objtool: Fix memory leak in create_static_call_sections() strdup() allocates memory for key_name. We need to release the memory in...
How severe is CVE-2023-53423?
CVE-2023-53423 has been rated MEDIUM with a CVSS base score of 5.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2023-53423?
Check the references section above for vendor advisories and patch information. Affected products include: Linux Linux Kernel.