CVE-2023-54091
Estado: AplazadaSin puntuar—
In the Linux kernel, the following vulnerability has been resolved:
drm/client: Fix memory leak in drm_client_target_cloned
dmt_mode is allocated and never freed in this function. It was found with the ast driver, but most drivers using generic fbdev setup are probably affected.
Detalles técnicos trazas, registros y código del informe original
This fixes the following kmemleak report:
backtrace:
[<00000000b391296d>] drm_mode_duplicate+0x45/0x220 [drm]
[<00000000e45bb5b3>] drm_client_target_cloned.constprop.0+0x27b/0x480 [drm]
[<00000000ed2d3a37>] drm_client_modeset_probe+0x6bd/0xf50 [drm]
[<0000000010e5cc9d>] __drm_fb_helper_initial_config_and_unlock+0xb4/0x2c0 [drm_kms_helper]
[<00000000909f82ca>] drm_fbdev_client_hotplug+0x2bc/0x4d0 [drm_kms_helper]
[<00000000063a69aa>] drm_client_register+0x169/0x240 [drm]
[<00000000a8c61525>] ast_pci_probe+0x142/0x190 [ast]
[<00000000987f19bb>] local_pci_probe+0xdc/0x180
[<000000004fca231b>] work_for_cpu_fn+0x4e/0xa0
[<0000000000b85301>] process_one_work+0x8b7/0x1540
[<000000003375b17c>] worker_thread+0x70a/0xed0
[<00000000b0d43cd9>] kthread+0x29f/0x340
[<000000008d770833>] ret_from_fork+0x1f/0x30
unreferenced object 0xff11000333089a00 (size 128):CVSS
NVD no ha asignado puntuación CVSS a esta CVE (habitual desde el cambio de política de abril de 2026).
Probabilidad de explotación (EPSS)
- Probabilidad de explotación en los próximos 30 días: 0.26%
- Percentil entre todas las CVEs puntuadas: 16
- Fecha de la puntuación: 6/10/2026
EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).
Tecnologías afectadas (1)
⚠ Inferidas por IA a partir de la descripción — NVD aún no ha analizado esta CVE; no son CPE verificados.
Referencias
- https://git.kernel.org/stable/c/105275879a80503686a8108af2f5c579a1c5aef4
- https://git.kernel.org/stable/c/4b596a6e2d2e0f9c14e4122506dd715f43fcd727
- https://git.kernel.org/stable/c/52daf6ba2e0d201640cb1ce42049c5c4426b4d6e
- https://git.kernel.org/stable/c/a4b978249e8fa94956fce8b70a709f7797716f62
- https://git.kernel.org/stable/c/a85e23a1ef63e45a18f0a30d7816fcb4a865ca95
- https://git.kernel.org/stable/c/b5359d7a5087ac398fc429da6833133b4784c268
- https://git.kernel.org/stable/c/c2a88e8bdf5f6239948d75283d0ae7e0c7945b03
- https://git.kernel.org/stable/c/d3009700f48602b557eade1f22c98b6bc20247e8
JSON original (NVD)
Mostrar
{
"id": "CVE-2023-54091",
"cveTags": [],
"metrics": {},
"affected": [
{
"source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67",
"affectedData": [
{
"repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git",
"vendor": "Linux",
"product": "Linux",
"versions": [
{
"status": "affected",
"version": "1d42bbc8f7f9ce4d852692ef7aa336b133b0830a",
"lessThan": "d3009700f48602b557eade1f22c98b6bc20247e8",
"versionType": "git"
},
{
"status": "affected",
"version": "1d42bbc8f7f9ce4d852692ef7aa336b133b0830a",
"lessThan": "a4b978249e8fa94956fce8b70a709f7797716f62",
"versionType": "git"
},
{
"status": "affected",
"version": "1d42bbc8f7f9ce4d852692ef7aa336b133b0830a",
"lessThan": "52daf6ba2e0d201640cb1ce42049c5c4426b4d6e",
"versionType": "git"
},
{
"status": "affected",
"version": "1d42bbc8f7f9ce4d852692ef7aa336b133b0830a",
"lessThan": "105275879a80503686a8108af2f5c579a1c5aef4",
"versionType": "git"
},
{
"status": "affected",
"version": "1d42bbc8f7f9ce4d852692ef7aa336b133b0830a",
"lessThan": "a85e23a1ef63e45a18f0a30d7816fcb4a865ca95",
"versionType": "git"
},
{
"status": "affected",
"version": "1d42bbc8f7f9ce4d852692ef7aa336b133b0830a",
"lessThan": "b5359d7a5087ac398fc429da6833133b4784c268",
"versionType": "git"
},
{
"status": "affected",
"version": "1d42bbc8f7f9ce4d852692ef7aa336b133b0830a",
"lessThan": "4b596a6e2d2e0f9c14e4122506dd715f43fcd727",
"versionType": "git"
},
{
"status": "affected",
"version": "1d42bbc8f7f9ce4d852692ef7aa336b133b0830a",
"lessThan": "c2a88e8bdf5f6239948d75283d0ae7e0c7945b03",
"versionType": "git"
}
],
"programFiles": [
"drivers/gpu/drm/drm_client_modeset.c"
],
"defaultStatus": "unaffected"
},
{
"repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git",
"vendor": "Linux",
"product": "Linux",
"versions": [
{
"status": "affected",
"version": "2.6.35"
},
{
"status": "unaffected",
"version": "0",
"lessThan": "2.6.35",
"versionType": "semver"
},
{
"status": "unaffected",
"version": "4.14.322",
"versionType": "semver",
"lessThanOrEqual": "4.14.*"
},
{
"status": "unaffected",
"version": "4.19.291",
"versionType": "semver",
"lessThanOrEqual": "4.19.*"
},
{
"status": "unaffected",
"version": "5.4.251",
"versionType": "semver",
"lessThanOrEqual": "5.4.*"
},
{
"status": "unaffected",
"version": "5.10.188",
"versionType": "semver",
"lessThanOrEqual": "5.10.*"
},
{
"status": "unaffected",
"version": "5.15.123",
"versionType": "semver",
"lessThanOrEqual": "5.15.*"
},
{
"status": "unaffected",
"version": "6.1.42",
"versionType": "semver",
"lessThanOrEqual": "6.1.*"
},
{
"status": "unaffected",
"version": "6.4.7",
"versionType": "semver",
"lessThanOrEqual": "6.4.*"
},
{
"status": "unaffected",
"version": "6.5",
"versionType": "original_commit_for_fix",
"lessThanOrEqual": "*"
}
],
"programFiles": [
"drivers/gpu/drm/drm_client_modeset.c"
],
"defaultStatus": "affected"
}
]
}
],
"published": "2025-12-24T13:16:10.970",
"references": [
{
"url": "https://git.kernel.org/stable/c/105275879a80503686a8108af2f5c579a1c5aef4",
"source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
},
{
"url": "https://git.kernel.org/stable/c/4b596a6e2d2e0f9c14e4122506dd715f43fcd727",
"source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
},
{
"url": "https://git.kernel.org/stable/c/52daf6ba2e0d201640cb1ce42049c5c4426b4d6e",
"source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
},
{
"url": "https://git.kernel.org/stable/c/a4b978249e8fa94956fce8b70a709f7797716f62",
"source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
},
{
"url": "https://git.kernel.org/stable/c/a85e23a1ef63e45a18f0a30d7816fcb4a865ca95",
"source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
},
{
"url": "https://git.kernel.org/stable/c/b5359d7a5087ac398fc429da6833133b4784c268",
"source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
},
{
"url": "https://git.kernel.org/stable/c/c2a88e8bdf5f6239948d75283d0ae7e0c7945b03",
"source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
},
{
"url": "https://git.kernel.org/stable/c/d3009700f48602b557eade1f22c98b6bc20247e8",
"source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
}
],
"vulnStatus": "Deferred",
"descriptions": [
{
"lang": "en",
"value": "In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/client: Fix memory leak in drm_client_target_cloned\n\ndmt_mode is allocated and never freed in this function.\nIt was found with the ast driver, but most drivers using generic fbdev\nsetup are probably affected.\n\nThis fixes the following kmemleak report:\n backtrace:\n [<00000000b391296d>] drm_mode_duplicate+0x45/0x220 [drm]\n [<00000000e45bb5b3>] drm_client_target_cloned.constprop.0+0x27b/0x480 [drm]\n [<00000000ed2d3a37>] drm_client_modeset_probe+0x6bd/0xf50 [drm]\n [<0000000010e5cc9d>] __drm_fb_helper_initial_config_and_unlock+0xb4/0x2c0 [drm_kms_helper]\n [<00000000909f82ca>] drm_fbdev_client_hotplug+0x2bc/0x4d0 [drm_kms_helper]\n [<00000000063a69aa>] drm_client_register+0x169/0x240 [drm]\n [<00000000a8c61525>] ast_pci_probe+0x142/0x190 [ast]\n [<00000000987f19bb>] local_pci_probe+0xdc/0x180\n [<000000004fca231b>] work_for_cpu_fn+0x4e/0xa0\n [<0000000000b85301>] process_one_work+0x8b7/0x1540\n [<000000003375b17c>] worker_thread+0x70a/0xed0\n [<00000000b0d43cd9>] kthread+0x29f/0x340\n [<000000008d770833>] ret_from_fork+0x1f/0x30\nunreferenced object 0xff11000333089a00 (size 128):"
}
],
"lastModified": "2026-06-17T06:46:47.153",
"sourceIdentifier": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
}