CVE-2023-54091 is a memory leak vulnerability in the Linux kernel's drm/client component, specifically within the drm_client_target_cloned function. This flaw, initially identified with the ast driver, likely affects most drivers utilizing generic fbdev setup. The vulnerability stems from an allocated dmt_mode object that is never freed, leading to resource exhaustion over time. The severity of this vulnerability is considered low, with no assigned CVSS score or known attack vector, complexity, or direct impact beyond memory exhaustion. The FAUCET Risk Score is 7/100, indicating minimal immediate threat. There is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community attention. This aligns with the typical lack of discussion and media coverage for the majority of CVEs.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
| Linux | Linux | 2.6.35CNA affecteddefault affected | |
| Linux | Linux | >= 1d42bbc8f7f9ce4d852692ef7aa336b133b0830a, < 105275879a80503686a8108af2f5c579a1c5aef4, >= 1d42bbc8f7f9ce4d852692ef7aa336b133b0830a, < 4b596a6e2d2e0f9c14e4122506dd715f43fcd727, >= 1d42bbc8f7f9ce4d852692ef7aa336b133b0830a, < 52daf6ba2e0d201640cb1ce42049c5c4426b4d6e, >= 1d42bbc8f7f9ce4d852692ef7aa336b133b0830a, < a4b978249e8fa94956fce8b70a709f7797716f62, >= 1d42bbc8f7f9ce4d852692ef7aa336b133b0830a, < a85e23a1ef63e45a18f0a30d7816fcb4a865ca95, >= 1d42bbc8f7f9ce4d852692ef7aa336b133b0830a, < b5359d7a5087ac398fc429da6833133b4784c268, >= 1d42bbc8f7f9ce4d852692ef7aa336b133b0830a, < c2a88e8bdf5f6239948d75283d0ae7e0c7945b03, >= 1d42bbc8f7f9ce4d852692ef7aa336b133b0830a, < d3009700f48602b557eade1f22c98b6bc20247e8CNA affecteddefault unaffected |
CVSS data has not been published for this CVE.
No media coverage found for this CVE.