CVE-2023-52643

medium

Description

In the Linux kernel, the following vulnerability has been resolved: iio: core: fix memleak in iio_device_register_sysfs When iio_device_register_sysfs_group() fails, we should free iio_dev_opaque->chan_attr_group.attrs to prevent potential memleak.

References

https://git.kernel.org/stable/c/b90126c86d83912688501826643ea698f0df1728

https://git.kernel.org/stable/c/95a0d596bbd0552a78e13ced43f2be1038883c81

https://git.kernel.org/stable/c/3db312e06851996e7fb27cb5a8ccab4c0f9cdb93

https://git.kernel.org/stable/c/359f220d0e753bba840eac19ffedcdc816b532f2

https://git.kernel.org/stable/c/1c6d19c8cbf6abcea2c8fca2db26abca2cbf0363

Details

Source: Mitre, NVD

Published: 2024-04-17

Updated: 2025-01-14

Risk Information

CVSS v2

Base Score: 4.6

Vector: CVSS2#AV:L/AC:L/Au:S/C:N/I:N/A:C

Severity: Medium

CVSS v3

Base Score: 5.5

Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Severity: Medium

EPSS

EPSS: 0.00092