CVE-2023-54109

UnknownEPSS 0.18%

Last modified

CVE-2023-54109 is a vulnerability of currently unknown severity. In the Linux kernel, the following vulnerability has been resolved: media: rcar_fdp1: Fix refcount leak in probe and remove function rcar_fcp_get() take reference, which should be balanced with rcar_fcp_put(). Add missing rcar_fcp_put() in fdp1_remove and the error paths of fdp1_probe() to fix this. [hverkuil: resolve merge conflict, remove() is now void]. EPSS estimates a 0.18% chance of exploitation in the next 30 days.

Description

In the Linux kernel, the following vulnerability has been resolved: media: rcar_fdp1: Fix refcount leak in probe and remove function rcar_fcp_get() take reference, which should be balanced with rcar_fcp_put(). Add missing rcar_fcp_put() in fdp1_remove and the error paths of fdp1_probe() to fix this. [hverkuil: resolve merge conflict, remove() is now void]

Metrics

EPSS Probability
0.18%

8.2th percentile

Probability of exploitation in the next 30 days. Learn more

Affected Software

Source: CNA advisory (CVE.org). NVD analysis pending.

VendorProductVersions
LinuxLinux>= 4710b752e029f3f82dd4a84d9dc61fe72c97bf82, < 418a8f3140e07f33bbd5a81625d0ef46c0732cef; >= 4710b752e029f3f82dd4a84d9dc61fe72c97bf82, < 9df630dafa1a59946d1da6f070d4cb64f14ea57c; >= 4710b752e029f3f82dd4a84d9dc61fe72c97bf82, < 1acb982e3616e70128994fdecf2368a259c8a489; >= 4710b752e029f3f82dd4a84d9dc61fe72c97bf82, < 2322b262d2205720518785c2706a3283725ba402; >= 4710b752e029f3f82dd4a84d9dc61fe72c97bf82, < 45b7461d914c867ef21c74798da8c42d13d3a0df; >= 4710b752e029f3f82dd4a84d9dc61fe72c97bf82, < 59c6addfaaaa09ff7654e4d8793cb16fd22a46d4; >= 4710b752e029f3f82dd4a84d9dc61fe72c97bf82, < 48765ca7c6b71bf73a4cc8475a4bad9e2633cf61; >= 4710b752e029f3f82dd4a84d9dc61fe72c97bf82, < c766c90faf93897b77c9c5daa603cffab85ba907
LinuxLinux4.10

References

Timeline

Published
Last Modified
Status
Deferred

Frequently Asked Questions

What is CVE-2023-54109?
In the Linux kernel, the following vulnerability has been resolved: media: rcar_fdp1: Fix refcount leak in probe and remove function rcar_fcp_get() take reference, which should be balanced with rcar_fcp_put(). Add missing rcar_fcp_put() in fdp1_remove and the error paths of fdp1_probe() to fix this. [hverkuil: resolve merge conflict, remove() is now void]
How severe is CVE-2023-54109?
Severity scoring for CVE-2023-54109 is pending analysis. The EPSS model estimates a 0.18% probability of exploitation in the next 30 days.
How do I fix CVE-2023-54109?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

How Strix Helps

Related CVEs from 2023

Are you affected by CVE-2023-54109?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST