CVE Database
/

CVE-2023-52457

Back to search

CVE-2023-52457

Published: Feb 23, 2024

Modified: May 23, 2026

PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: serial: 8250: omap: Don't skip resource freeing if pm_runtime_resume_and_get() failed Returning an error code from .remove() makes the driver core emit the little helpful error message: remove callback returned a non-zero value. This will be ignored. and then remove the device anyhow. So all resources that were not freed are leaked in this case. Skipping serial8250_unregister_port() has the potential to keep enough of the UART around to trigger a use-after-free. So replace the error return (and with it the little helpful error message) by a more useful error message and continue to cleanup.

VendorProductVersions

Linux

Linux

affected
2d66412563ef8953e2bac2d98d2d832b3f3f49cd - < b502fb43f7fb55aaf07f6092ab44657595214b93
affected
d833cba201adf9237168e19f0d76e4d7aa69f303 - < bc57f3ef8a9eb0180606696f586a6dcfaa175ed0
affected
e0db709a58bdeb8966890882261a3f8438c5c9b7 - < 828cd829483f0cda920710997aed79130b0af690
affected
e3f0c638f428fd66b5871154b62706772045f91a - < d74173bda29aba58f822175d983d07c8ed335494
affected
e3f0c638f428fd66b5871154b62706772045f91a - < 887a558d0298d36297daea039954c39940228d9b

+7 more versions

Linux

Linux

affected
6.1
unaffected
0 - < 6.1
unaffected
5.4.268 - <= 5.4.*
unaffected
5.10.209 - <= 5.10.*
unaffected
5.15.148 - <= 5.15.*

+4 more versions

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now