{"id":"CVE-2023-54115","summary":"pcmcia: rsrc_nonstatic: Fix memory leak in nonstatic_release_resource_db()","details":"In the Linux kernel, the following vulnerability has been resolved:\n\npcmcia: rsrc_nonstatic: Fix memory leak in nonstatic_release_resource_db()\n\nWhen nonstatic_release_resource_db() frees all resources associated\nwith an PCMCIA socket, it forgets to free socket_data too, causing\na memory leak observable with kmemleak:\n\nunreferenced object 0xc28d1000 (size 64):\n  comm \"systemd-udevd\", pid 297, jiffies 4294898478 (age 194.484s)\n  hex dump (first 32 bytes):\n    00 00 00 00 00 00 00 00 f0 85 0e c3 00 00 00 00  ................\n    00 00 00 00 0c 10 8d c2 00 00 00 00 00 00 00 00  ................\n  backtrace:\n    [\u003cffda4245\u003e] __kmem_cache_alloc_node+0x2d7/0x4a0\n    [\u003c7e51f0c8\u003e] kmalloc_trace+0x31/0xa4\n    [\u003cd52b4ca0\u003e] nonstatic_init+0x24/0x1a4 [pcmcia_rsrc]\n    [\u003ca2f13e08\u003e] pcmcia_register_socket+0x200/0x35c [pcmcia_core]\n    [\u003ca728be1b\u003e] yenta_probe+0x4d8/0xa70 [yenta_socket]\n    [\u003cc48fac39\u003e] pci_device_probe+0x99/0x194\n    [\u003c84b7c690\u003e] really_probe+0x181/0x45c\n    [\u003c8060fe6e\u003e] __driver_probe_device+0x75/0x1f4\n    [\u003cb9b76f43\u003e] driver_probe_device+0x28/0xac\n    [\u003c648b766f\u003e] __driver_attach+0xeb/0x1e4\n    [\u003c6e9659eb\u003e] bus_for_each_dev+0x61/0xb4\n    [\u003c25a669f3\u003e] driver_attach+0x1e/0x28\n    [\u003cd8671d6b\u003e] bus_add_driver+0x102/0x20c\n    [\u003cdf0d323c\u003e] driver_register+0x5b/0x120\n    [\u003c942cd8a4\u003e] __pci_register_driver+0x44/0x4c\n    [\u003ce536027e\u003e] __UNIQUE_ID___addressable_cleanup_module188+0x1c/0xfffff000 [iTCO_vendor_support]\n\nFix this by freeing socket_data too.\n\nTested on a Acer Travelmate 4002WLMi by manually binding/unbinding\nthe yenta_cardbus driver (yenta_socket).","modified":"2026-03-31T17:29:50.134235073Z","published":"2025-12-24T13:06:36.892Z","related":["SUSE-SU-2026:0263-1","SUSE-SU-2026:0278-1","SUSE-SU-2026:0281-1","SUSE-SU-2026:0293-1","SUSE-SU-2026:0315-1","SUSE-SU-2026:0317-1","SUSE-SU-2026:0411-1","SUSE-SU-2026:0617-1","SUSE-SU-2026:20477-1","SUSE-SU-2026:20498-1","SUSE-SU-2026:20845-1","SUSE-SU-2026:20876-1"],"database_specific":{"cna_assigner":"Linux","osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/54xxx/CVE-2023-54115.json"},"references":[{"type":"WEB","url":"https://git.kernel.org/stable/c/04bb8af40a7729c398ed4caea7e66cedd2881719"},{"type":"WEB","url":"https://git.kernel.org/stable/c/22100df1d57f04cf2370d5347b9ef547f481deea"},{"type":"WEB","url":"https://git.kernel.org/stable/c/2d45e2be0be35a3d66863563ed2591ee18a6897e"},{"type":"WEB","url":"https://git.kernel.org/stable/c/97fd1c8e9c5aa833aab7e836760bc13103afa892"},{"type":"WEB","url":"https://git.kernel.org/stable/c/bde0b6da7bd893c37afaee3555cc3ac3be582313"},{"type":"WEB","url":"https://git.kernel.org/stable/c/c85fd9422fe0f5d667305efb27f56d09eab120b0"},{"type":"WEB","url":"https://git.kernel.org/stable/c/e8a80cf06b4bb0396212289d651b384c949f09d0"},{"type":"WEB","url":"https://git.kernel.org/stable/c/fd53a1f28faba2c4806c055e706a7721006291c1"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/54xxx/CVE-2023-54115.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2023-54115"},{"type":"PACKAGE","url":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","events":[{"introduced":"1da177e4c3f41524e886b7f1b8a0c1fc7321cac2"},{"fixed":"bde0b6da7bd893c37afaee3555cc3ac3be582313"},{"fixed":"2d45e2be0be35a3d66863563ed2591ee18a6897e"},{"fixed":"22100df1d57f04cf2370d5347b9ef547f481deea"},{"fixed":"04bb8af40a7729c398ed4caea7e66cedd2881719"},{"fixed":"97fd1c8e9c5aa833aab7e836760bc13103afa892"},{"fixed":"e8a80cf06b4bb0396212289d651b384c949f09d0"},{"fixed":"fd53a1f28faba2c4806c055e706a7721006291c1"},{"fixed":"c85fd9422fe0f5d667305efb27f56d09eab120b0"}]}],"database_specific":{"source":"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2023-54115.json"}},{"package":{"name":"Kernel","ecosystem":"Linux"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"2.6.12"},{"fixed":"4.14.324"}]},{"type":"ECOSYSTEM","events":[{"introduced":"4.15.0"},{"fixed":"4.19.293"}]},{"type":"ECOSYSTEM","events":[{"introduced":"4.20.0"},{"fixed":"5.4.255"}]},{"type":"ECOSYSTEM","events":[{"introduced":"5.5.0"},{"fixed":"5.10.192"}]},{"type":"ECOSYSTEM","events":[{"introduced":"5.11.0"},{"fixed":"5.15.128"}]},{"type":"ECOSYSTEM","events":[{"introduced":"5.16.0"},{"fixed":"6.1.47"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.2.0"},{"fixed":"6.4.12"}]}],"database_specific":{"source":"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2023-54115.json"}}],"schema_version":"1.7.5"}