SB2025102307 - Memory leak in Linux kernel mfd driver
Published: October 23, 2025 Updated: October 26, 2025
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 security vulnerability.
1) Memory leak (CVE-ID: CVE-2023-53724)
The vulnerability allows a local user to perform a denial of service (DoS) attack.
The vulnerability exists due to memory leak within the pcf50633_adc_async_read() function in drivers/mfd/pcf50633-adc.c. A local user can perform a denial of service (DoS) attack.
Remediation
Install update from vendor's website.
References
- https://git.kernel.org/stable/c/3ee13bdf0d25ae8752ae6185b6d13bbb0d5a8e30
- https://git.kernel.org/stable/c/41cdf082ae006ea002135dfaf43b2897de3bded8
- https://git.kernel.org/stable/c/588edb4fb1f1e6487a0f60a5f7b9a24d2d0c9f8e
- https://git.kernel.org/stable/c/66616eed76dfa6f3e442907760325a023c6da7e2
- https://git.kernel.org/stable/c/6a8a02dcfae13ab07dc7bed2b409cec7f3d32e92
- https://git.kernel.org/stable/c/8b450dcff23aa254844492831a8e2b508a9d522d
- https://git.kernel.org/stable/c/9cca3a4933ca365cc664d5eefb0f942374ea8b41
- https://git.kernel.org/stable/c/a62a5e79202967176a9c1a04e477860779accd6c
- https://mirrors.edge.kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.2.3