UBUNTU-CVE-2023-53725
Dashboard / Vulnerabilities / UBUNTU-CVE-2023-53725
Summary:
Details: In the Linux kernel, the following vulnerability has been resolved: clocksource/drivers/cadence-ttc: Fix memory leak in ttc_timer_probe Smatch reports: drivers/clocksource/timer-cadence-ttc.c:529 ttc_timer_probe() warn: 'timer_baseaddr' from of_iomap() not released on lines: 498,508,516. timer_baseaddr may have the problem of not being released after use, I replaced it with the devm_of_iomap() function and added the clk_put() function to cleanup the "clk_ce" and "clk_cs".
References: https://ubuntu.com/security/CVE-2023-53725, https://www.cve.org/CVERecord?id=CVE-2023-53725, https://git.kernel.org/linus/8b5bf64c89c7100c921bd807ba39b2eb003061ab, https://git.kernel.org/stable/c/289e2054eeb63c9e133960731c342eeffad218d3, https://git.kernel.org/stable/c/54cc10a0f4b01b522e9519014200f1b33bf7e4aa, https://git.kernel.org/stable/c/67d7eebbc424935dec61fb352d1ccae5d16cf429, https://git.kernel.org/stable/c/8b5bf64c89c7100c921bd807ba39b2eb003061ab, https://git.kernel.org/stable/c/919dd531ebb7514f205ae7aab87994337ebce1f6, https://git.kernel.org/stable/c/99744200f28b2cf5f50767447e51b4b4a977d145, https://git.kernel.org/stable/c/e0a9cc90ea44a50d76a84f9f9bf1703d31fe45e9, https://git.kernel.org/stable/c/ebdff0986513a29be242aace0ef89b6c105b0bf0
Affected packages
Package
Name: linux
Purl: pkg:deb/ubuntu/linux?arch=source&distro=esm-infra-legacy%2Ftrusty
Affected ranges
Type: ECOSYSTEM
Events:
