Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2023-54015

11
FAUCET Score

CVE-2023-54015 is a use-after-free vulnerability in the Linux kernel's mlx5 network driver. It arises from improper handling of device private data (priv) during devcom allocation failures, where the driver might free memory allocated by a different thread. While no specific affected products are listed, this flaw impacts Linux systems utilizing the mlx5 driver. The vulnerability's severity is currently unrated by CVSS, but its potential for use-after-free bugs suggests a risk of system instability or privilege escalation. There is no evidence of active exploitation, public exploit code, or significant community discussion surrounding this CVE.

Impacted Technologies

VendorProductVersion(s)CPE
LinuxLinux
5.0CNA affecteddefault affected
LinuxLinux
>= fadd59fc50d010145f251db583c7ccef37393d19, < 1e755065368000205e6683fa924b2654e99f573b, >= fadd59fc50d010145f251db583c7ccef37393d19, < 3dfc1004d9afbf689087ae1eafd88f55481984c7, >= fadd59fc50d010145f251db583c7ccef37393d19, < a3a516caef2c5be2f4d171890a8b3415bfab4e5e, >= fadd59fc50d010145f251db583c7ccef37393d19, < af87194352cad882d787d06fb7efa714acd95427, >= fadd59fc50d010145f251db583c7ccef37393d19, < d4d10a6df1529b3f446cdada5c25e065f4712756, >= fadd59fc50d010145f251db583c7ccef37393d19, < eaa365c10459052cbe3e44caa4ad760cb93bd435CNA affecteddefault unaffected

CVSS Data

CVSS data has not been published for this CVE.

Exploit Intelligence

EPSS Score
0.18%
Probability of exploitation in next 30 days
EPSS Percentile
7.8%
Percentile rank of EPSS score among Peer Group
As of 2026-07-28
Model: v2026.06.15

Social Chatter

Media Mentions

No media coverage found for this CVE.

Remediation

Patch Available

Vendor Patches (6)

redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8Fixed in: kernel-0:4.18.0-513.5.1.el8_9
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 9Fixed in: kernel-0:5.14.0-362.8.1.el9_3
View patch
redhatvendor investigatingvia redhat_api
Product: Red Hat Enterprise Linux 7Fixed in: kernel
redhatvendor investigatingvia redhat_api
Product: Red Hat Enterprise Linux 7Fixed in: kernel-rt
redhatvendor investigatingvia redhat_api
Product: Red Hat Enterprise Linux 8Fixed in: kernel-rt
redhatvendor investigatingvia redhat_api
Product: Red Hat Enterprise Linux 9Fixed in: kernel-rt

Vendor Advisories (1)

redhatCVE-2023-54015Moderate

kernel: net/mlx5: Devcom, fix error flow in mlx5_devcom_register_device

Dec 24, 2025

References

git.kernel.org / stable/c/1e755065368000205e6683fa924b2654e99f573b
git.kernel.org / stable/c/3dfc1004d9afbf689087ae1eafd88f55481984c7
git.kernel.org / stable/c/a3a516caef2c5be2f4d171890a8b3415bfab4e5e
git.kernel.org / stable/c/af87194352cad882d787d06fb7efa714acd95427
git.kernel.org / stable/c/d4d10a6df1529b3f446cdada5c25e065f4712756
git.kernel.org / stable/c/eaa365c10459052cbe3e44caa4ad760cb93bd435