U.S. flag   An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.

Vulnerability Change Records for CVE-2023-52457

Change History

New CVE Received by NIST 2/23/2024 10:15:08 AM

Action Type Old Value New Value
Added Description

								
							
							
						
In the Linux kernel, the following vulnerability has been resolved:

serial: 8250: omap: Don't skip resource freeing if pm_runtime_resume_and_get() failed

Returning an error code from .remove() makes the driver core emit the
little helpful error message:

	remove callback returned a non-zero value. This will be ignored.

and then remove the device anyhow. So all resources that were not freed
are leaked in this case. Skipping serial8250_unregister_port() has the
potential to keep enough of the UART around to trigger a use-after-free.

So replace the error return (and with it the little helpful error
message) by a more useful error message and continue to cleanup.
Added Reference

								
							
							
						
Linux https://git.kernel.org/stable/c/828cd829483f0cda920710997aed79130b0af690 [No types assigned]
Added Reference

								
							
							
						
Linux https://git.kernel.org/stable/c/887a558d0298d36297daea039954c39940228d9b [No types assigned]
Added Reference

								
							
							
						
Linux https://git.kernel.org/stable/c/95e4e0031effad9837af557ecbfd4294a4d8aeee [No types assigned]
Added Reference

								
							
							
						
Linux https://git.kernel.org/stable/c/ad90d0358bd3b4554f243a425168fc7cebe7d04e [No types assigned]
Added Reference

								
							
							
						
Linux https://git.kernel.org/stable/c/b502fb43f7fb55aaf07f6092ab44657595214b93 [No types assigned]
Added Reference

								
							
							
						
Linux https://git.kernel.org/stable/c/bc57f3ef8a9eb0180606696f586a6dcfaa175ed0 [No types assigned]
Added Reference

								
							
							
						
Linux https://git.kernel.org/stable/c/d74173bda29aba58f822175d983d07c8ed335494 [No types assigned]