CVE-2023-52653
Published: May 1, 2024
Modified: May 11, 2026
Description
In the Linux kernel, the following vulnerability has been resolved: SUNRPC: fix a memleak in gss_import_v2_context The ctx->mech_used.data allocated by kmemdup is not freed in neither gss_import_v2_context nor it only caller gss_krb5_import_sec_context, which frees ctx on error. Thus, this patch reform the last call of gss_import_v2_context to the gss_krb5_import_ctx_v2, preventing the memleak while keepping the return formation.
| Vendor | Product | Versions |
|---|---|---|
Linux | Linux | affected 47d84807762966c3611c38adecec6ea703ddda7a - < 99044c01ed5329e73651c054d8a4baacdbb1a27caffected 47d84807762966c3611c38adecec6ea703ddda7a - < 47ac11db93e74ac49cd6c3fc69bcbc5964c4a8b4affected 47d84807762966c3611c38adecec6ea703ddda7a - < d111e30d9cd846bb368faf3637dc0f71fcbcf822affected 47d84807762966c3611c38adecec6ea703ddda7a - < e67b652d8e8591d3b1e569dbcdfcee15993e91fa |
Linux | Linux | affected 2.6.35unaffected 0 - < 2.6.35unaffected 6.6.23 - <= 6.6.*unaffected 6.7.11 - <= 6.7.*unaffected 6.8.2 - <= 6.8.*+1 more versions |
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now