SB2025091688 - Memory leak in Linux kernel tty serial driver
Published: September 16, 2025 Updated: September 22, 2025
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 security vulnerability.
1) Memory leak (CVE-ID: CVE-2023-53173)
The vulnerability allows a local user to perform a denial of service (DoS) attack.
The vulnerability exists due to memory leak within the pch_uart_exit_port() function in drivers/tty/serial/pch_uart.c. A local user can perform a denial of service (DoS) attack.
Remediation
Install update from vendor's website.
References
- https://git.kernel.org/stable/c/04a189c720aa2b6091442113ce9b9bc93552dff8
- https://git.kernel.org/stable/c/139769c4bd8273b5e3f85ea474aa37018fe7e436
- https://git.kernel.org/stable/c/4459d1e7bd0421b3b6fcd745773d8823f71615ef
- https://git.kernel.org/stable/c/cf042964c2fa72950bbbf25b2cdd732b873e89db
- https://mirrors.edge.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.15.100