CVE-2023-52684

Source
https://nvd.nist.gov/vuln/detail/CVE-2023-52684
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-52684.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2023-52684
Downstream
Published
2024-05-17T14:24:46.675Z
Modified
2025-11-19T21:46:23.086010Z
Severity
  • 5.5 (Medium) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H CVSS Calculator
Summary
firmware: qcom: qseecom: fix memory leaks in error paths
Details

In the Linux kernel, the following vulnerability has been resolved:

firmware: qcom: qseecom: fix memory leaks in error paths

Fix instances of returning error codes directly instead of jumping to the relevant labels where memory allocated for the SCM calls would be freed.

References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
759e7a2b62eb3ef3c93ffeb5cca788a09627d7d9
Fixed
85fdbf6840455be64eac16bdfe0df3368ee3d0f0
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
759e7a2b62eb3ef3c93ffeb5cca788a09627d7d9
Fixed
6c57d7b593c4a4e60db65d5ce0fe1d9f79ccbe9b

Affected versions

v6.*

v6.6
v6.6-rc2
v6.6-rc3
v6.6-rc4
v6.6-rc5
v6.6-rc6
v6.6-rc7
v6.7
v6.7-rc1
v6.7-rc2
v6.7-rc3
v6.7-rc4
v6.7-rc5
v6.7-rc6
v6.7-rc7
v6.7-rc8
v6.7.1

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.7.2