CVE-2023-54273

Source
https://nvd.nist.gov/vuln/detail/CVE-2023-54273
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-54273.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2023-54273
Downstream
Published
2025-12-30T12:16:02.992Z
Modified
2025-12-30T20:39:44.871232Z
Summary
xfrm: Fix leak of dev tracker
Details

In the Linux kernel, the following vulnerability has been resolved:

xfrm: Fix leak of dev tracker

At the stage of direction checks, the netdev reference tracker is already initialized, but released with wrong *_put() call.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/54xxx/CVE-2023-54273.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
919e43fad5163a8ceb39826ecdee897a9f799351
Fixed
7d16c515059b3746f2d6a24a74c3ba786a68c2a1
Fixed
ec8f32ad9a65a8cbb465b69e154aaec9d2fe45c4

Affected versions

v6.*

v6.1
v6.1-rc8
v6.2
v6.2-rc1
v6.2-rc2
v6.2-rc3
v6.2-rc4
v6.2-rc5
v6.2-rc6
v6.2-rc7
v6.2-rc8
v6.3
v6.3-rc1
v6.3-rc2
v6.3-rc3
v6.3-rc4
v6.3-rc5
v6.3-rc6
v6.3-rc7
v6.3.1
v6.3.2
v6.3.3

Database specific

source

"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-54273.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.3.4

Database specific

source

"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-54273.json"