PT-2025-53168 · Linux · Linux Kernel

Published

2023-07-13

·

Updated

2026-03-24

·

CVE-2023-54091

CVSS v2.0

4.6

Medium

VectorAV:L/AC:L/Au:S/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A memory leak exists in the drm client target cloned function within the kernel's DRM client module. The dmt mode memory is allocated but not freed, potentially leading to resource exhaustion. This issue was identified through a kmemleak report and observed with the ast driver, but is likely present in other drivers utilizing generic fbdev setup. The function drm mode duplicate is involved in the call stack leading to the memory leak.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Memory Leak

Weakness Enumeration

Related Identifiers

BDU:2026-01236
CVE-2023-54091
OESA-2026-1231
RHSA-2023:7077
RHSA-2024:2394
SUSE-SU-2026:0263-1
SUSE-SU-2026:0278-1
SUSE-SU-2026:0281-1
SUSE-SU-2026:0293-1
SUSE-SU-2026:0315-1
SUSE-SU-2026:0316-1
SUSE-SU-2026:0317-1
SUSE-SU-2026:0411-1
SUSE-SU-2026:0617-1
SUSE-SU-2026:20477-1
SUSE-SU-2026:20498-1
SUSE-SU-2026:20845-1
SUSE-SU-2026:20876-1

Affected Products

Linux Kernel