CVE-2023-53670

Source
https://cve.org/CVERecord?id=CVE-2023-53670
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2023-53670.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2023-53670
Downstream
Related
Published
2025-10-07T15:21:27.626Z
Modified
2026-03-20T12:33:17.159397Z
Summary
nvme-core: fix dev_pm_qos memleak
Details

In the Linux kernel, the following vulnerability has been resolved:

nvme-core: fix devpmqos memleak

Call devpmqoshidelatency_tolerance() in the error unwind patch to avoid following kmemleak:-

blktests (master) # kmemleak-clear; ./check nvme/044; blktests (master) # kmemleak-scan ; kmemleak-show nvme/044 (Test bi-directional authentication) [passed] runtime 2.111s ... 2.124s unreferenced object 0xffff888110c46240 (size 96): comm "nvme", pid 33461, jiffies 4345365353 (age 75.586s) hex dump (first 32 bytes): 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ backtrace: [<0000000069ac2cec>] kmalloctrace+0x25/0x90 [<000000006acc66d5>] devpmqosupdateuserlatencytolerance+0x6f/0x100 [<00000000cc376ea7>] nvmeinitctrl+0x38e/0x410 [nvmecore] [<000000007df61b4b>] 0xffffffffc05e88b3 [<00000000d152b985>] 0xffffffffc05744cb [<00000000f04a4041>] vfswrite+0xc5/0x3c0 [<00000000f9491baf>] ksyswrite+0x5f/0xe0 [<000000001c46513d>] dosyscall64+0x3b/0x90 [<00000000ecf348fe>] entrySYSCALL64afterhwframe+0x72/0xdc

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/53xxx/CVE-2023-53670.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
f50fff73d620cd6e8f48bc58d4f1c944615a3fea
Fixed
e1379e067b9485e5af03399fe3f0d39bccb023ad
Fixed
7237c26431cc78e5ec3259f4350f3dd58f6a4319
Fixed
2ed9a89192e3192e5fea7ff6475c8722513f325e
Fixed
7ed5cf8e6d9bfb6a78d0471317edff14f0f2b4dd

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2023-53670.json"