Home

Description

In the Linux kernel, the following vulnerability has been resolved: nvme-core: fix memory leak in dhchap_secret_store Free dhchap_secret in nvme_ctrl_dhchap_secret_store() before we return fix following kmemleack:- unreferenced object 0xffff8886376ea800 (size 64): comm "check", pid 22048, jiffies 4344316705 (age 92.199s) hex dump (first 32 bytes): 44 48 48 43 2d 31 3a 30 30 3a 6e 78 72 35 4b 67 DHHC-1:00:nxr5Kg 75 58 34 75 6f 41 78 73 4a 61 34 63 2f 68 75 4c uX4uoAxsJa4c/huL backtrace: [<0000000030ce5d4b>] __kmalloc+0x4b/0x130 [<000000009be1cdc1>] nvme_ctrl_dhchap_secret_store+0x8f/0x160 [nvme_core] [<00000000ac06c96a>] kernfs_fop_write_iter+0x12b/0x1c0 [<00000000437e7ced>] vfs_write+0x2ba/0x3c0 [<00000000f9491baf>] ksys_write+0x5f/0xe0 [<000000001c46513d>] do_syscall_64+0x3b/0x90 [<00000000ecf348fe>] entry_SYSCALL_64_after_hwframe+0x72/0xdc unreferenced object 0xffff8886376eaf00 (size 64): comm "check", pid 22048, jiffies 4344316736 (age 92.168s) hex dump (first 32 bytes): 44 48 48 43 2d 31 3a 30 30 3a 6e 78 72 35 4b 67 DHHC-1:00:nxr5Kg 75 58 34 75 6f 41 78 73 4a 61 34 63 2f 68 75 4c uX4uoAxsJa4c/huL backtrace: [<0000000030ce5d4b>] __kmalloc+0x4b/0x130 [<000000009be1cdc1>] nvme_ctrl_dhchap_secret_store+0x8f/0x160 [nvme_core] [<00000000ac06c96a>] kernfs_fop_write_iter+0x12b/0x1c0 [<00000000437e7ced>] vfs_write+0x2ba/0x3c0 [<00000000f9491baf>] ksys_write+0x5f/0xe0 [<000000001c46513d>] do_syscall_64+0x3b/0x90 [<00000000ecf348fe>] entry_SYSCALL_64_after_hwframe+0x72/0xdc

PUBLISHED Reserved 2025-12-09 | Published 2025-12-09 | Updated 2025-12-09 | Assigner Linux

Product status

Default status
unaffected

f50fff73d620cd6e8f48bc58d4f1c944615a3fea (git) before 2e9b141307554521d60fecf6bf1d2edc8dd0181d
affected

f50fff73d620cd6e8f48bc58d4f1c944615a3fea (git) before c41ac086d2abaf7527a5685f9c0a1c209ab7e0aa
affected

f50fff73d620cd6e8f48bc58d4f1c944615a3fea (git) before 6a5eda5017959541ab82c5d56bcf784b8294e298
affected

f50fff73d620cd6e8f48bc58d4f1c944615a3fea (git) before a836ca33c5b07d34dd5347af9f64d25651d12674
affected

Default status
affected

6.0
affected

Any version before 6.0
unaffected

6.1.39 (semver)
unaffected

6.3.13 (semver)
unaffected

6.4.4 (semver)
unaffected

6.5 (original_commit_for_fix)
unaffected

References

git.kernel.org/...c/2e9b141307554521d60fecf6bf1d2edc8dd0181d

git.kernel.org/...c/c41ac086d2abaf7527a5685f9c0a1c209ab7e0aa

git.kernel.org/...c/6a5eda5017959541ab82c5d56bcf784b8294e298

git.kernel.org/...c/a836ca33c5b07d34dd5347af9f64d25651d12674

cve.org (CVE-2023-53852)

nvd.nist.gov (CVE-2023-53852)

Download JSON