CVE-2023-53746

Linux Kernel Memory Leak in vfio_ap Device Driver

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: s390/vfio-ap: fix memory leak in vfio_ap device driver The device release callback function invoked to release the matrix device uses the dev_get_drvdata(device *dev) function to retrieve the pointer to the vfio_matrix_dev object in order to free its storage. The problem is, this object is not stored as drvdata with the device; since the kfree function will accept a NULL pointer, the memory for the vfio_matrix_dev object is never freed. Since the device being released is contained within the vfio_matrix_dev object, the container_of macro will be used to retrieve its pointer.

Scores

EPSS 0.0017
EPSS Percentile 6.7%

Details

Status published
Products (19)
linux/Kernel 4.20.0 - 5.4.240linux
linux/Kernel 5.11.0 - 5.15.106linux
linux/Kernel 5.16.0 - 6.1.23linux
linux/Kernel 5.5.0 - 5.10.177linux
linux/Kernel 6.2.0 - 6.2.10linux
Linux/Linux < 4.20
Linux/Linux 1fde573413b549d52183382e639c1d6ce88f5959 - 5195de1d5f66b276683240a896783f7f43c4f664
Linux/Linux 1fde573413b549d52183382e639c1d6ce88f5959 - 6a40fda14b4be3e38f03cc42ffd4efbc64fb3e67
Linux/Linux 1fde573413b549d52183382e639c1d6ce88f5959 - 7b6a02f5bf15931464c79dfd487c57f76aae3496
Linux/Linux 1fde573413b549d52183382e639c1d6ce88f5959 - 8f8cf767589f2131ae5d40f3758429095c701c84
... and 9 more
Published Dec 08, 2025
Tracked Since Feb 18, 2026