CVE-2023-53424

Source
https://cve.org/CVERecord?id=CVE-2023-53424
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-53424.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2023-53424
Downstream
Related
Published
2025-09-18T16:04:06.635Z
Modified
2026-02-13T15:14:00.067296Z
Severity
  • 5.5 (Medium) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H CVSS Calculator
Summary
clk: mediatek: fix of_iomap memory leak
Details

In the Linux kernel, the following vulnerability has been resolved:

clk: mediatek: fix of_iomap memory leak

Smatch reports: drivers/clk/mediatek/clk-mtk.c:583 mtkclksimpleprobe() warn: 'base' from ofiomap() not released on lines: 496.

This problem was also found in linux-next. In mtkclksimpleprobe(), base is not released when handling errors if clkdata is not existed, which may cause a leak. So free_base should be added here to release base.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/53xxx/CVE-2023-53424.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
c58cd0e40ffac67961b945793876b973728f9b80
Fixed
2cae6a28d8c12c597e8656962271520434c61c48
Fixed
47234e19b00816a8a7b278c7173f6d4e928c43c7
Fixed
3db7285e044144fd88a356f5b641b9cd4b231a77

Affected versions

v5.*
v5.14
v5.14-rc2
v5.14-rc3
v5.14-rc4
v5.14-rc5
v5.14-rc6
v5.14-rc7
v5.15
v5.15-rc1
v5.15-rc2
v5.15-rc3
v5.15-rc4
v5.15-rc5
v5.15-rc6
v5.15-rc7
v5.16
v5.16-rc1
v5.16-rc2
v5.16-rc3
v5.16-rc4
v5.16-rc5
v5.16-rc6
v5.16-rc7
v5.16-rc8
v5.17
v5.17-rc1
v5.17-rc2
v5.17-rc3
v5.17-rc4
v5.17-rc5
v5.17-rc6
v5.17-rc7
v5.17-rc8
v5.18
v5.18-rc1
v5.18-rc2
v5.18-rc3
v5.18-rc4
v5.18-rc5
v5.18-rc6
v5.18-rc7
v5.19
v5.19-rc1
v5.19-rc2
v5.19-rc3
v5.19-rc4
v5.19-rc5
v5.19-rc6
v5.19-rc7
v5.19-rc8
v6.*
v6.0
v6.0-rc1
v6.0-rc2
v6.0-rc3
v6.0-rc4
v6.0-rc5
v6.0-rc6
v6.0-rc7
v6.1
v6.1-rc1
v6.1-rc2
v6.1-rc3
v6.1-rc4
v6.1-rc5
v6.1-rc6
v6.1-rc7
v6.1-rc8
v6.2
v6.2-rc1
v6.2-rc2
v6.2-rc3
v6.2-rc4
v6.2-rc5
v6.2-rc6
v6.2-rc7
v6.2-rc8
v6.3
v6.3-rc1
v6.3-rc2
v6.3-rc3
v6.3-rc4
v6.3-rc5
v6.3-rc6
v6.3-rc7
v6.3.1
v6.3.10
v6.3.11
v6.3.12
v6.3.2
v6.3.3
v6.3.4
v6.3.5
v6.3.6
v6.3.7
v6.3.8
v6.3.9
v6.4
v6.4-rc1
v6.4-rc2
v6.4-rc3
v6.4-rc4
v6.4-rc5
v6.4-rc6
v6.4-rc7
v6.4.1
v6.4.2
v6.4.3

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-53424.json"
vanir_signatures
[
    {
        "signature_type": "Line",
        "signature_version": "v1",
        "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@3db7285e044144fd88a356f5b641b9cd4b231a77",
        "digest": {
            "line_hashes": [
                "238961272032759726035923306953331360776",
                "41788767702329452724931486189603228376",
                "134768238568706175191811114258436576567",
                "48389019004993919067243831360354218109",
                "105964316576547347996959007959275554310",
                "273935583618961644236796309134514398353",
                "93881511983265543513011901088454395423",
                "204905946082405819981979469940204545216",
                "94972990219383577257007338441295508376"
            ],
            "threshold": 0.9
        },
        "id": "CVE-2023-53424-7f9cc701",
        "deprecated": false,
        "target": {
            "file": "drivers/clk/mediatek/clk-mtk.c"
        }
    },
    {
        "signature_type": "Function",
        "signature_version": "v1",
        "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@3db7285e044144fd88a356f5b641b9cd4b231a77",
        "digest": {
            "function_hash": "147231182092552176565610807026169124011",
            "length": 2853.0
        },
        "id": "CVE-2023-53424-9b081475",
        "deprecated": false,
        "target": {
            "file": "drivers/clk/mediatek/clk-mtk.c",
            "function": "__mtk_clk_simple_probe"
        }
    }
]

Git / github.com/gregkh/linux

Affected versions

v6.*
v6.4
v6.4.1
v6.4.2
v6.4.3

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-53424.json"