CVE Database
/

CVE-2023-53997

Back to search

CVE-2023-53997

Published: Dec 24, 2025

Modified: May 11, 2026

PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: thermal: of: fix double-free on unregistration Since commit 3d439b1a2ad3 ("thermal/core: Alloc-copy-free the thermal zone parameters structure"), thermal_zone_device_register() allocates a copy of the tzp argument and frees it when unregistering, so thermal_of_zone_register() now ends up leaking its original tzp and double-freeing the tzp copy. Fix this by locating tzp on stack instead.

VendorProductVersions

Linux

Linux

affected
3d439b1a2ad36c8b4ea151c8de25309d60d17407 - < adce49089412a9ae28f5c666e0bb12fbcd86b3f7
affected
3d439b1a2ad36c8b4ea151c8de25309d60d17407 - < ac4436a5b20e0ef1f608a9ef46c08d5d142f8da6

Linux

Linux

affected
6.4
unaffected
0 - < 6.4
unaffected
6.4.8 - <= 6.4.*
unaffected
6.5 - <= *

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now