-

CVE-2023-53745

um: vector: Fix memory leak in vector_config

In the Linux kernel, the following vulnerability has been resolved:

um: vector: Fix memory leak in vector_config

If the return value of the uml_parse_vector_ifspec function is NULL,
we should call kfree(params) to prevent memory leak.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
Produkt Linux
Default Statusunaffected
Version 49da7e64f33e80edffb1a9eeb230fa4c3f42dffb
Version < 5c49fb5ad01104acc584405572abf6616d45148e
Status affected
Version 49da7e64f33e80edffb1a9eeb230fa4c3f42dffb
Version < 6480c3a12755bf85d6738ab60967e89b809c701a
Status affected
Version 49da7e64f33e80edffb1a9eeb230fa4c3f42dffb
Version < f2b9c4544e3bd60f353732291300097b0e8d8454
Status affected
Version 49da7e64f33e80edffb1a9eeb230fa4c3f42dffb
Version < 276a7298af6a801e9a865282605a79303365ec66
Status affected
Version 49da7e64f33e80edffb1a9eeb230fa4c3f42dffb
Version < c8583b4655aab44a9796b5c4a681ddcc6fe2f0d0
Status affected
Version 49da7e64f33e80edffb1a9eeb230fa4c3f42dffb
Version < 634a9c139cc1362f6a9cc6cbfe442dbb60ff9f3f
Status affected
Version 49da7e64f33e80edffb1a9eeb230fa4c3f42dffb
Version < 8f88c73afe481f93d40801596927e8c0047b6d96
Status affected
HerstellerLinux
Produkt Linux
Default Statusaffected
Version 4.17
Status affected
Version 0
Version < 4.17
Status unaffected
Version <= 4.19.*
Version 4.19.276
Status unaffected
Version <= 5.4.*
Version 5.4.235
Status unaffected
Version <= 5.10.*
Version 5.10.173
Status unaffected
Version <= 5.15.*
Version 5.15.100
Status unaffected
Version <= 6.1.*
Version 6.1.18
Status unaffected
Version <= 6.2.*
Version 6.2.5
Status unaffected
Version <= *
Version 6.3
Status unaffected
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.03% 0.084
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
Es wurden noch keine Informationen zu CWE veröffentlicht.