CVE-2023-53264

MEDIUM

Linux Kernel - Use-After-Free in imxrt1050_clocks_probe

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: clk: imx: clk-imxrt1050: fix memory leak in imxrt1050_clocks_probe Use devm_of_iomap() instead of of_iomap() to automatically handle the unused ioremap region. If any error occurs, regions allocated by kzalloc() will leak, but using devm_kzalloc() instead will automatically free the memory using devm_kfree(). Also, fix error handling of hws by adding unregister_hws label, which unregisters remaining hws when iomap failed.

Scores

CVSS v3 5.5
EPSS 0.0014
EPSS Percentile 4.1%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-401
Status published
Products (11)
Linux/Linux < 5.18
Linux/Linux 5.18
Linux/Linux 6.1.39 - 6.1.*
Linux/Linux 6.3.13 - 6.3.*
Linux/Linux 6.4.4 - 6.4.*
Linux/Linux 6.5
Linux/Linux 7154b046d8f3a441474ced1688eb348d42f5f165 - 02e54db221bb001b32f839e0149ee8d890ab9aa1
Linux/Linux 7154b046d8f3a441474ced1688eb348d42f5f165 - 0fbdfd2542252e4c02e8158a06b7c0c9cfd40f99
Linux/Linux 7154b046d8f3a441474ced1688eb348d42f5f165 - 1839032251a66f2ae5a043c495532830a55d28c4
Linux/Linux 7154b046d8f3a441474ced1688eb348d42f5f165 - 1b280598ab3bd8a2dc8b96a12530d5b1ee7a8f4a
... and 1 more
Published Sep 16, 2025
Tracked Since Feb 18, 2026