SB2025120830 - Memory leak in Linux kernel pci driver
Published: December 8, 2025 Updated: December 12, 2025
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 security vulnerability.
1) Memory leak (CVE-ID: CVE-2023-53743)
The vulnerability allows a local user to perform a denial of service (DoS) attack.
The vulnerability exists due to memory leak within the pci_register_host_bridge() function in drivers/pci/probe.c. A local user can perform a denial of service (DoS) attack.
Remediation
Install update from vendor's website.
References
- https://git.kernel.org/stable/c/4443f3695d581ad1a55f2ef59259dcd0c52402b3
- https://git.kernel.org/stable/c/8ec9c1d5d0a5a4744516adb483b97a238892f9d5
- https://git.kernel.org/stable/c/a076e73dd6e619729e1af8d0d802fe52ac5eb2b3
- https://git.kernel.org/stable/c/a08713b9d9031683b83b3ecf12bad40a1ca35211
- https://mirrors.edge.kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.5.3