SB20251230104 - Memory leak in Linux kernel trace
Published: December 30, 2025 Updated: December 31, 2025
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 security vulnerability.
1) Memory leak (CVE-ID: CVE-2023-54171)
The vulnerability allows a local user to perform a denial of service (DoS) attack.
The vulnerability exists due to memory leak within the tracing_release_pipe() function in kernel/trace/trace.c. A local user can perform a denial of service (DoS) attack.
Remediation
Install update from vendor's website.
References
- https://git.kernel.org/stable/c/1a1e793e021d75cd0accd8f329ec9456e5cd105e
- https://git.kernel.org/stable/c/3f42d57a76e7e96585f08855554e002218cbca0c
- https://git.kernel.org/stable/c/954792db9f61b6c0b8a94b8831fed5f146014029
- https://git.kernel.org/stable/c/be970e22c53d5572b2795b79da9716ada937023b
- https://git.kernel.org/stable/c/d5a821896360cc8b93a15bd888fabc858c038dc0
- https://mirrors.edge.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.188
- https://mirrors.edge.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.15.121
- https://mirrors.edge.kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.1.40
- https://mirrors.edge.kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.4.5
- https://mirrors.edge.kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.5