{"id":"DEBIAN-CVE-2023-54171","details":"In the Linux kernel, the following vulnerability has been resolved:  tracing: Fix memory leak of iter-\u003etemp when reading trace_pipe  kmemleak reports:   unreferenced object 0xffff88814d14e200 (size 256):     comm \"cat\", pid 336, jiffies 4294871818 (age 779.490s)     hex dump (first 32 bytes):       04 00 01 03 00 00 00 00 08 00 00 00 00 00 00 00  ................       0c d8 c8 9b ff ff ff ff 04 5a ca 9b ff ff ff ff  .........Z......     backtrace:       [\u003cffffffff9bdff18f\u003e] __kmalloc+0x4f/0x140       [\u003cffffffff9bc9238b\u003e] trace_find_next_entry+0xbb/0x1d0       [\u003cffffffff9bc9caef\u003e] trace_print_lat_context+0xaf/0x4e0       [\u003cffffffff9bc94490\u003e] print_trace_line+0x3e0/0x950       [\u003cffffffff9bc95499\u003e] tracing_read_pipe+0x2d9/0x5a0       [\u003cffffffff9bf03a43\u003e] vfs_read+0x143/0x520       [\u003cffffffff9bf04c2d\u003e] ksys_read+0xbd/0x160       [\u003cffffffff9d0f0edf\u003e] do_syscall_64+0x3f/0x90       [\u003cffffffff9d2000aa\u003e] entry_SYSCALL_64_after_hwframe+0x6e/0xd8  when reading file 'trace_pipe', 'iter-\u003etemp' is allocated or relocated in trace_find_next_entry() but not freed before 'trace_pipe' is closed.  To fix it, free 'iter-\u003etemp' in tracing_release_pipe().","modified":"2026-09-15T08:47:27.510780784Z","published":"2025-12-30T13:16:04.940Z","upstream":["CVE-2023-54171"],"references":[{"type":"ADVISORY","url":"https://security-tracker.debian.org/tracker/CVE-2023-54171"}],"affected":[{"package":{"name":"linux","ecosystem":"Debian:12","purl":"pkg:deb/debian/linux?arch=source&distro=bookworm"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"6.1.52-1"}]}],"versions":["6.1.27-1","6.1.37-1","6.1.38-1","6.1.38-2","6.1.38-2~bpo11+1","6.1.38-3","6.1.38-4","6.1.38-4~bpo11+1"],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2023-54171.json"}},{"package":{"name":"linux","ecosystem":"Debian:13","purl":"pkg:deb/debian/linux?arch=source&distro=trixie"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"6.4.11-1"}]}],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2023-54171.json"}},{"package":{"name":"linux","ecosystem":"Debian:14","purl":"pkg:deb/debian/linux?arch=source&distro=forky"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"6.4.11-1"}]}],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2023-54171.json"}}],"schema_version":"1.9.0"}