目標達成 すべての支援者に感謝 — 100%達成しました!

目標: 1000 CNY · 調達済み: 1336 CNY

100%

CVE-2023-53409— Linux kernel 安全漏洞

AI Predicted 3.3 Difficulty: Trivial EPSS 0.14% · P3

Possible ATT&CK Techniques 1AI

T1562

Affected Version Matrix 10

ベンダープロダクトVersion Rangeステータス
LinuxLinuxc654cea59dbc352fceafddd44893f3523fdcc08e< 09709a49283f79184c998d6dafcc01590e4d654daffected
c654cea59dbc352fceafddd44893f3523fdcc08e< 79ac2b01e033181e21cc84216ace1f4160eb8950affected
c654cea59dbc352fceafddd44893f3523fdcc08e< bf0fd01c7cc1061fb2cfda3e2044371642108e6caffected
c654cea59dbc352fceafddd44893f3523fdcc08e< 8deb87b1e810dd558371e88ffd44339fbef27870affected
5.13affected
< 5.13unaffected
5.15.100≤ 5.15.*unaffected
6.1.18≤ 6.1.*unaffected
… +2 more rows
新しい脆弱性情報の通知を購読するログインして購読

I. CVE-2023-53409の基本情報

脆弱性情報

脆弱性についてご質問がありますか?Shenlongの分析が参考になるかご確認ください!
Shenlongの10の質問を表示 ↗

高度な大規模言語モデル技術を使用していますが、出力には不正確または古い情報が含まれる可能性があります。Shenlongはデータの正確性を確保するよう努めていますが、実際の状況に基づいて検証・判断してください。

脆弱性タイトル
drivers: base: component: fix memory leak with using debugfs_lookup()
ソース: CVE Program / CVE List V5
脆弱性説明
In the Linux kernel, the following vulnerability has been resolved: drivers: base: component: fix memory leak with using debugfs_lookup() When calling debugfs_lookup() the result must have dput() called on it, otherwise the memory will leak over time. To make things simpler, just call debugfs_lookup_and_remove() instead which handles all of the logic at once.
ソース: CVE Program / CVE List V5
CVSS情報
N/A
ソース: CVE Program / CVE List V5
脆弱性タイプ
N/A
ソース: CVE Program / CVE List V5
脆弱性タイトル
Linux kernel 安全漏洞
ソース: CNNVD (China National Vulnerability Database)
脆弱性説明
Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于未正确处理debugfs_lookup返回值,可能导致内存泄漏。
ソース: CNNVD (China National Vulnerability Database)
CVSS情報
N/A
ソース: CNNVD (China National Vulnerability Database)
脆弱性タイプ
N/A
ソース: CNNVD (China National Vulnerability Database)

影響を受ける製品

ベンダープロダクト影響を受けるバージョンCPE購読
LinuxLinux c654cea59dbc352fceafddd44893f3523fdcc08e ~ 09709a49283f79184c998d6dafcc01590e4d654d -
LinuxLinux 5.13 -

II. CVE-2023-53409の公開POC

#POC説明ソースリンクShenlongリンク
AI生成POCプレミアム

公開POCは見つかりませんでした。

ログインしてAI POCを生成

III. CVE-2023-53409のインテリジェンス情報

登录查看更多情报信息。

Same Patch Batch · Linux · 2025-09-18 · 121 CVEs total

CVE-2022-504109.8 CRITICALNFSD: Protect against send buffer overflow in NFSv2 READ
CVE-2022-504019.8 CRITICALnfsd: under NFSv4.1, fix double svc_xprt_put on rpc_create failure
CVE-2023-533829.8 CRITICALnet/smc: Reset connection when trying to use SMCRv2 fails.
CVE-2022-504198.8 HIGHBluetooth: hci_sysfs: Fix attempting to call device_add multiple times
CVE-2022-504138.8 HIGHwifi: mac80211: fix use-after-free
CVE-2023-534318.8 HIGHscsi: ses: Handle enclosure with just a primary component gracefully
CVE-2023-534328.8 HIGHfirewire: net: fix use after free in fwnet_finish_incoming_packet()
CVE-2023-533748.8 HIGHBluetooth: hci_conn: fail SCO/ISO via hci_conn_failed if ACL gone early
CVE-2022-503868.8 HIGHBluetooth: L2CAP: Fix user-after-free
CVE-2023-533728.2 HIGHsctp: fix a potential overflow in sctp_ifwdtsn_skip
CVE-2022-503997.8 HIGHmedia: atomisp: prevent integer overflow in sh_css_set_black_frame()
CVE-2023-533987.8 HIGHmlx5: fix possible ptp queue fifo use-after-free
CVE-2023-533947.8 HIGHnet/mlx5e: xsk: Fix crash on regular rq reactivation
CVE-2022-504177.8 HIGHdrm/panfrost: Fix GEM handle creation ref-counting
CVE-2023-534297.8 HIGHbtrfs: don't check PageError in __extent_writepage
CVE-2023-533737.8 HIGHcrypto: seqiv - Handle EBUSY correctly
CVE-2023-533877.8 HIGHscsi: ufs: core: Fix device management cmd timeout flow
CVE-2023-533787.8 HIGHdrm/i915/dpt: Treat the DPT BO as a framebuffer
CVE-2023-533867.8 HIGHBluetooth: Fix potential use-after-free when clear keys
CVE-2023-534267.8 HIGHxsk: Fix xsk_diag use-after-free error during socket cleanup

Showing 20 of 121 CVEs. View all on vendor page →

IV. 関連脆弱性

V. CVE-2023-53409へのコメント

まだコメントはありません


コメントを残す