PT-2025-49653 · Linux+3 · Linux Kernel+3

CVE-2023-53793

·

Publicado

2023-06-13

·

Atualizado

2026-07-01

CVSS v2.0

4.6

Média

VetorAV:L/AC:L/Au:S/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description The perf tool within the Linux kernel contains a memory leak in the x86 CPUID detection mechanism. The leak occurs when using the perf env read cpuid function, triggered during CPUID detection. The issue was identified by a leak sanitizer, indicating a direct leak of 21 bytes in memory allocated via interceptor strdup. The leak is associated with the perf env cpuid function and impacts the configuration of event selection (evsel config) and event list configuration (evlist config).
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Improper Resource Release

Memory Leak

Missing Release of Resource after Effective Lifetime

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2026-10207
CVE-2023-53793
RHSA-2023:7077
SUSE-SU-2026:0278-1
SUSE-SU-2026:0281-1
SUSE-SU-2026:0293-1
SUSE-SU-2026:0315-1
SUSE-SU-2026:20477-1
SUSE-SU-2026:20498-1
SUSE-SU-2026:20845-1
SUSE-SU-2026:20876-1

Produtos afetados

Centos
Linux Kernel
Red Hat
Red Os