{"id":"DEBIAN-CVE-2023-53446","details":"In the Linux kernel, the following vulnerability has been resolved:  PCI/ASPM: Disable ASPM on MFD function removal to avoid use-after-free  Struct pcie_link_state-\u003edownstream is a pointer to the pci_dev of function 0.  Previously we retained that pointer when removing function 0, and subsequent ASPM policy changes dereferenced it, resulting in a use-after-free warning from KASAN, e.g.:    # echo 1 \u003e /sys/bus/pci/devices/0000:03:00.0/remove   # echo powersave \u003e /sys/module/pcie_aspm/parameters/policy    BUG: KASAN: slab-use-after-free in pcie_config_aspm_link+0x42d/0x500   Call Trace:    kasan_report+0xae/0xe0    pcie_config_aspm_link+0x42d/0x500    pcie_aspm_set_policy+0x8e/0x1a0    param_attr_store+0x162/0x2c0    module_attr_store+0x3e/0x80  PCIe spec r6.0, sec 7.5.3.7, recommends that software program the same ASPM Control value in all functions of multi-function devices.  Disable ASPM and free the pcie_link_state when any child function is removed so we can discard the dangling pcie_link_state-\u003edownstream pointer and maintain the same ASPM Control configuration for all functions.  [bhelgaas: commit log and comment]","modified":"2026-09-15T09:02:54.727140645Z","published":"2025-09-18T16:15:48.940Z","upstream":["CVE-2023-53446"],"references":[{"type":"ADVISORY","url":"https://security-tracker.debian.org/tracker/CVE-2023-53446"}],"affected":[{"package":{"name":"linux","ecosystem":"Debian:12","purl":"pkg:deb/debian/linux?arch=source&distro=bookworm"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"6.1.52-1"}]}],"versions":["6.1.27-1","6.1.37-1","6.1.38-1","6.1.38-2","6.1.38-2~bpo11+1","6.1.38-3","6.1.38-4","6.1.38-4~bpo11+1"],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2023-53446.json"}},{"package":{"name":"linux","ecosystem":"Debian:13","purl":"pkg:deb/debian/linux?arch=source&distro=trixie"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"6.4.4-1"}]}],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2023-53446.json"}},{"package":{"name":"linux","ecosystem":"Debian:14","purl":"pkg:deb/debian/linux?arch=source&distro=forky"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"6.4.4-1"}]}],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2023-53446.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"}]}