CVE-2023-53415

Source
https://cve.org/CVERecord?id=CVE-2023-53415
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2023-53415.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2023-53415
Downstream
Related
Published
2025-09-18T13:58:51.771Z
Modified
2026-03-20T12:33:08.571118Z
Severity
  • 5.5 (Medium) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H CVSS Calculator
Summary
USB: dwc3: fix memory leak with using debugfs_lookup()
Details

In the Linux kernel, the following vulnerability has been resolved:

USB: dwc3: fix memory leak with using debugfs_lookup()

When calling debugfslookup() the result must have dput() called on it, otherwise the memory will leak over time. To make things simpler, just call debugfslookupandremove() instead which handles all of the logic at once.

Note, the root dentry for the debugfs directory for the device needs to be saved so we don't have to keep looking it up, which required a bit more refactoring to properly create and remove it when needed.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/53xxx/CVE-2023-53415.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
8d396bb0a5b62b326f6be7594d8bd46b088296bd
Fixed
cf52c320cf74245ce1c12b0bd48f77b87d77fbc9
Fixed
ce234af49d103d95e3fdca59b25e0d0242f41bb4
Fixed
bab872b638130a18fd54d9adfad7db77ed6457be
Fixed
be308d68785b205e483b3a0c61ba3a82da468f2c
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Last affected
3bef21035888dd19750ad79b5d08fe52a02ad719
Last affected
d7e403eea007f47776186d4d572f234b1221e6e3
Last affected
e52d43c82f2f6556f0b7a790c19c072c1e99a95f
Last affected
afd8b0d091d5b4febe2d0ac3b7735c1826329302

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2023-53415.json"