PT-2025-54067 · Linux+3 · Linux Kernel+3

Published

2025-12-30

·

Updated

2026-01-28

·

CVE-2023-54238

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A flaw exists in the Linux kernel related to memory management within the mlx5 driver. Specifically, a memory leak occurs during Precision Time Protocol (PTP) resynchronization operations, where SKBs (Socket Buffer) are not properly freed after being removed from the FIFO. This leak happens because SKBs are popped from the FIFO but are neither freed by napi consume nor dev kfree skb any. Additionally, an error in the mlx5e skb fifo has room() function, involving type promotion during counter subtraction, can lead to incorrect checks and further contribute to the SKB leak. The function napi consume skb is used to properly free SKBs.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2023-54238
RHSA-2023:6583
RHSA-2023:7077
SUSE-SU-2026:0263-1
SUSE-SU-2026:0317-1

Affected Products

Centos
Linux Kernel
Red Hat
Mlx5