CVE-2023-53518

MEDIUM

Linux Kernel 4.7-4.14.325 - Use-After-Free in devfreq_dev_release()

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: PM / devfreq: Fix leak in devfreq_dev_release() srcu_init_notifier_head() allocates resources that need to be released with a srcu_cleanup_notifier_head() call. Reported by kmemleak.

Scores

CVSS v3 5.5
EPSS 0.0014
EPSS Percentile 3.3%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Details

CWE
CWE-401
Status published
Products (21)
Linux/Linux < 4.7
Linux/Linux 0fe3a66410a3ba96679be903f1e287d7a0a264a9 - 111bafa210ae546bee7644be730c42df9c35b66e
Linux/Linux 0fe3a66410a3ba96679be903f1e287d7a0a264a9 - 1640e9c72173911ad0fddb05012c01eafe082c4e
Linux/Linux 0fe3a66410a3ba96679be903f1e287d7a0a264a9 - 29811f4b8255d4238cf326f3bb7129784766beab
Linux/Linux 0fe3a66410a3ba96679be903f1e287d7a0a264a9 - 3354c401c68d70567d1ef25d12f4e22a7813a3c6
Linux/Linux 0fe3a66410a3ba96679be903f1e287d7a0a264a9 - 5693d077595de721f9ddbf9d37f40e5409707dfe
Linux/Linux 0fe3a66410a3ba96679be903f1e287d7a0a264a9 - 64e6e0dc2d578c0a9e31cb4edd719f0a3ed98f6d
Linux/Linux 0fe3a66410a3ba96679be903f1e287d7a0a264a9 - 7462483446cb9986568ad7adae746ce5f18d2968
Linux/Linux 0fe3a66410a3ba96679be903f1e287d7a0a264a9 - 8918025feb2f5f7c73f2495c158f22997e25cb02
Linux/Linux 0fe3a66410a3ba96679be903f1e287d7a0a264a9 - ab192e5e5d3b48415909a8408acfd007a607bcc0
... and 11 more
Published Oct 01, 2025
Tracked Since Feb 18, 2026