SB2025102312 - Memory leak in Linux kernel clk imx driver
Published: October 23, 2025 Updated: October 26, 2025
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 security vulnerability.
1) Memory leak (CVE-ID: CVE-2023-53704)
The vulnerability allows a local user to perform a denial of service (DoS) attack.
The vulnerability exists due to memory leak within the imx8mp_clocks_probe() function in drivers/clk/imx/clk-imx8mp.c. A local user can perform a denial of service (DoS) attack.
Remediation
Install update from vendor's website.
References
- https://git.kernel.org/stable/c/5bcf140e9e6cf76f1f1bd1f489a14ca4d49f9a1a
- https://git.kernel.org/stable/c/6317d0302655f7e854cd4f31e93b47d35cb058bb
- https://git.kernel.org/stable/c/878b02d5f3b56cb090dbe2c70c89273be144087f
- https://git.kernel.org/stable/c/92ce7629a11ae62292e1cfaa6132dab081fc80ee
- https://git.kernel.org/stable/c/bcea444ab4c045864b55d67313833d606676602a
- https://git.kernel.org/stable/c/cb047c13bbf9018693ae31f03a5a26b212d02f13
- https://mirrors.edge.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.188