{"id":"DEBIAN-CVE-2023-53468","details":"In the Linux kernel, the following vulnerability has been resolved:  ubifs: Fix memory leak in alloc_wbufs()  kmemleak reported a sequence of memory leaks, and show them as following:    unreferenced object 0xffff8881575f8400 (size 1024):     comm \"mount\", pid 19625, jiffies 4297119604 (age 20.383s)     hex dump (first 32 bytes):       00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................       00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................     backtrace:       [\u003cffffffff8176cecd\u003e] __kmalloc+0x4d/0x150       [\u003cffffffffa0406b2b\u003e] ubifs_mount+0x307b/0x7170 [ubifs]       [\u003cffffffff819fa8fd\u003e] legacy_get_tree+0xed/0x1d0       [\u003cffffffff81936f2d\u003e] vfs_get_tree+0x7d/0x230       [\u003cffffffff819b2bd4\u003e] path_mount+0xdd4/0x17b0       [\u003cffffffff819b37aa\u003e] __x64_sys_mount+0x1fa/0x270       [\u003cffffffff83c14295\u003e] do_syscall_64+0x35/0x80       [\u003cffffffff83e0006a\u003e] entry_SYSCALL_64_after_hwframe+0x46/0xb0    unreferenced object 0xffff8881798a6e00 (size 512):     comm \"mount\", pid 19677, jiffies 4297121912 (age 37.816s)     hex dump (first 32 bytes):       6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b  kkkkkkkkkkkkkkkk       6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b 6b  kkkkkkkkkkkkkkkk     backtrace:       [\u003cffffffff8176cecd\u003e] __kmalloc+0x4d/0x150       [\u003cffffffffa0418342\u003e] ubifs_wbuf_init+0x52/0x480 [ubifs]       [\u003cffffffffa0406ca5\u003e] ubifs_mount+0x31f5/0x7170 [ubifs]       [\u003cffffffff819fa8fd\u003e] legacy_get_tree+0xed/0x1d0       [\u003cffffffff81936f2d\u003e] vfs_get_tree+0x7d/0x230       [\u003cffffffff819b2bd4\u003e] path_mount+0xdd4/0x17b0       [\u003cffffffff819b37aa\u003e] __x64_sys_mount+0x1fa/0x270       [\u003cffffffff83c14295\u003e] do_syscall_64+0x35/0x80       [\u003cffffffff83e0006a\u003e] entry_SYSCALL_64_after_hwframe+0x46/0xb0  The problem is that the ubifs_wbuf_init() returns an error in the loop which in the alloc_wbufs(), then the wbuf-\u003ebuf and wbuf-\u003einodes that were successfully alloced before are not freed.  Fix it by adding error hanging path in alloc_wbufs() which frees the memory alloced before when ubifs_wbuf_init() returns an error.","modified":"2026-09-15T09:02:44.883580411Z","published":"2025-10-01T12:15:48.830Z","upstream":["CVE-2023-53468"],"references":[{"type":"ADVISORY","url":"https://security-tracker.debian.org/tracker/CVE-2023-53468"}],"affected":[{"package":{"name":"linux","ecosystem":"Debian:12","purl":"pkg:deb/debian/linux?arch=source&distro=bookworm"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"6.1.20-1"}]}],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2023-53468.json"}},{"package":{"name":"linux","ecosystem":"Debian:13","purl":"pkg:deb/debian/linux?arch=source&distro=trixie"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"6.1.20-1"}]}],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2023-53468.json"}},{"package":{"name":"linux","ecosystem":"Debian:14","purl":"pkg:deb/debian/linux?arch=source&distro=forky"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"6.1.20-1"}]}],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2023-53468.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H"}]}