{"id":"DEBIAN-CVE-2023-54077","details":"In the Linux kernel, the following vulnerability has been resolved:  fs/ntfs3: Fix memory leak if ntfs_read_mft failed  Label ATTR_ROOT in ntfs_read_mft() sets is_root = true and ni-\u003eni_flags |= NI_FLAG_DIR, then next attr will goto label ATTR_ALLOC and alloc ni-\u003edir.alloc_run. However two states are not always consistent and can make memory leak.   1) attr_name in ATTR_ROOT does not fit the condition it will set  is_root = true but NI_FLAG_DIR is not set.  2) next attr_name in ATTR_ALLOC fits the condition and alloc  ni-\u003edir.alloc_run  3) in cleanup function ni_clear(), when NI_FLAG_DIR is set, it frees  ni-\u003edir.alloc_run, otherwise it frees ni-\u003efile.run  4) because NI_FLAG_DIR is not set in this case, ni-\u003edir.alloc_run is  leaked as kmemleak reported:  unreferenced object 0xffff888003bc5480 (size 64):   backtrace:     [\u003c000000003d42e6b0\u003e] __kmalloc_node+0x4e/0x1c0     [\u003c00000000d8e19b8a\u003e] kvmalloc_node+0x39/0x1f0     [\u003c00000000fc3eb5b8\u003e] run_add_entry+0x18a/0xa40 [ntfs3]     [\u003c0000000011c9f978\u003e] run_unpack+0x75d/0x8e0 [ntfs3]     [\u003c00000000e7cf1819\u003e] run_unpack_ex+0xbc/0x500 [ntfs3]     [\u003c00000000bbf0a43d\u003e] ntfs_iget5+0xb25/0x2dd0 [ntfs3]     [\u003c00000000a6e50693\u003e] ntfs_fill_super+0x218d/0x3580 [ntfs3]     [\u003c00000000b9170608\u003e] get_tree_bdev+0x3fb/0x710     [\u003c000000004833798a\u003e] vfs_get_tree+0x8e/0x280     [\u003c000000006e20b8e6\u003e] path_mount+0xf3c/0x1930     [\u003c000000007bf15a5f\u003e] do_mount+0xf3/0x110     ...  Fix this by always setting is_root and NI_FLAG_DIR together.","modified":"2026-09-15T09:02:56.568899679Z","published":"2025-12-24T13:16:09.543Z","upstream":["CVE-2023-54077"],"references":[{"type":"ADVISORY","url":"https://security-tracker.debian.org/tracker/CVE-2023-54077"}],"affected":[{"package":{"name":"linux","ecosystem":"Debian:12","purl":"pkg:deb/debian/linux?arch=source&distro=bookworm"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"6.1.37-1"}]}],"versions":["6.1.27-1"],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2023-54077.json"}},{"package":{"name":"linux","ecosystem":"Debian:13","purl":"pkg:deb/debian/linux?arch=source&distro=trixie"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"6.3.7-1"}]}],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2023-54077.json"}},{"package":{"name":"linux","ecosystem":"Debian:14","purl":"pkg:deb/debian/linux?arch=source&distro=forky"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"6.3.7-1"}]}],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2023-54077.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"}]}