PT-2025-38350 · Linux+5 · Linux Kernel+5
Published
2023-07-05
·
Updated
2026-05-26
·
CVE-2023-53371
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Linux kernel versions prior to 5.10.142-1-generic, 5.10.142-1-hardened, 6.1.50-1-generic, and 6.1.90-1-generic
Description
The Linux kernel contains a flaw in the net/mlx5e module, specifically within the
mlx5e fs tt redirect any create function. This issue results in a memory leak because the memory pointed to by the fs->any pointer is not freed during error handling within the function. This can lead to resource exhaustion over time.Recommendations
Update to Linux kernel version 5.10.142-1-generic or later.
Update to Linux kernel version 5.10.142-1-hardened or later.
Update to Linux kernel version 6.1.50-1-generic or later.
Update to Linux kernel version 6.1.90-1-generic or later.
Exploit
Fix
DoS
Missing Release of Resource after Effective Lifetime
Memory Leak
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Astra Linux
Centos
Linux Kernel
Red Hat
Suse
Mlx5E