CVE-2023-52936 Information

Description

In the Linux kernel the following vulnerability has been resolved:

kernel/irq/irqdomain.c: fix memory leak with using debugfs_lookup()

When calling debugfs_lookup() the result must have dput() called on it otherwise the memory will leak over time. To make things simpler just call debugfs_lookup_and_remove() instead which handles all of the logic at once.

Reference

https://git.kernel.org/stable/c/066ecbf1a53eb0b92b10c8df7808666be6ea5681 https://git.kernel.org/stable/c/cf1c917bf1c761a557b26410024e90057646c049 https://git.kernel.org/stable/c/d83d7ed260283560700d4034a80baad46620481b

Share on: