CVE-2023-53008

CVSS 3.1 Score 5.5 of 10 (medium)

Details

Published Mar 27, 2025
Updated: Apr 14, 2025
CWE ID 401

Summary

CVE-2023-53008 is a newly identified vulnerability affecting the Linux kernel. This issue pertains to the Common Internet File System (cifs) and involves potential memory leaks during session setup. The Linux team has resolved this issue by ensuring that the memory associated with cifs_ses::auth_key.response is properly freed before being reallocated. Failure to do so could result in memory leakage during reconnects or mounting processes. This vulnerability poses a potential risk if exploited, and users are advised to update their Linux kernels to the latest version to mitigate the threat.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share