In the Linux kernel, the following vulnerability has been resolved:
USB: chipidea: fix memory leak with using debugfs_lookup()
When calling debugfslookup() the result must have dput() called on it, otherwise the memory will leak over time. To make things simpler, just call debugfslookupandremove() instead which handles all of the logic at once.
{
"osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/53xxx/CVE-2023-53334.json",
"cna_assigner": "Linux"
}"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2023-53334.json"
[
{
"id": "CVE-2023-53334-03700979",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@4322661af6d7a586a5798ab9aa443f49895b6943",
"target": {
"file": "drivers/usb/chipidea/debug.c"
},
"digest": {
"threshold": 0.9,
"line_hashes": [
"190397304761115398416009786723587872117",
"129374843511203140067364804502197556651"
]
},
"signature_version": "v1",
"deprecated": false,
"signature_type": "Line"
},
{
"id": "CVE-2023-53334-36cfe56f",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@4322661af6d7a586a5798ab9aa443f49895b6943",
"target": {
"file": "drivers/usb/chipidea/debug.c",
"function": "dbg_remove_files"
},
"digest": {
"function_hash": "250657257619711142118629195721440061584",
"length": 107.0
},
"signature_version": "v1",
"deprecated": false,
"signature_type": "Function"
},
{
"id": "CVE-2023-53334-4a481088",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@972e0682f6e3ee6ecf002657df4aaa511d51dd6c",
"target": {
"file": "drivers/usb/chipidea/debug.c",
"function": "dbg_remove_files"
},
"digest": {
"function_hash": "250657257619711142118629195721440061584",
"length": 107.0
},
"signature_version": "v1",
"deprecated": false,
"signature_type": "Function"
},
{
"id": "CVE-2023-53334-4bd31f11",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@ff35f3ea3baba5b81416ac02d005cfbf6dd182fa",
"target": {
"file": "drivers/usb/chipidea/debug.c"
},
"digest": {
"threshold": 0.9,
"line_hashes": [
"190397304761115398416009786723587872117",
"129374843511203140067364804502197556651"
]
},
"signature_version": "v1",
"deprecated": false,
"signature_type": "Line"
},
{
"id": "CVE-2023-53334-83d6767e",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@610373dd354f3d393aa3bdcab59f55024c16b5e5",
"target": {
"file": "drivers/usb/chipidea/debug.c",
"function": "dbg_remove_files"
},
"digest": {
"function_hash": "250657257619711142118629195721440061584",
"length": 107.0
},
"signature_version": "v1",
"deprecated": false,
"signature_type": "Function"
},
{
"id": "CVE-2023-53334-8435abde",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@ff35f3ea3baba5b81416ac02d005cfbf6dd182fa",
"target": {
"file": "drivers/usb/chipidea/debug.c",
"function": "dbg_remove_files"
},
"digest": {
"function_hash": "250657257619711142118629195721440061584",
"length": 107.0
},
"signature_version": "v1",
"deprecated": false,
"signature_type": "Function"
},
{
"id": "CVE-2023-53334-bbcb0b94",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@972e0682f6e3ee6ecf002657df4aaa511d51dd6c",
"target": {
"file": "drivers/usb/chipidea/debug.c"
},
"digest": {
"threshold": 0.9,
"line_hashes": [
"190397304761115398416009786723587872117",
"129374843511203140067364804502197556651"
]
},
"signature_version": "v1",
"deprecated": false,
"signature_type": "Line"
},
{
"id": "CVE-2023-53334-f8a15bca",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@610373dd354f3d393aa3bdcab59f55024c16b5e5",
"target": {
"file": "drivers/usb/chipidea/debug.c"
},
"digest": {
"threshold": 0.9,
"line_hashes": [
"190397304761115398416009786723587872117",
"129374843511203140067364804502197556651"
]
},
"signature_version": "v1",
"deprecated": false,
"signature_type": "Line"
}
]