{"dataType":"CVE_RECORD","dataVersion":"5.2","cveMetadata":{"cveId":"CVE-2023-53078","assignerOrgId":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","state":"PUBLISHED","assignerShortName":"Linux","dateReserved":"2025-05-02T15:51:43.549Z","datePublished":"2025-05-02T15:55:28.246Z","dateUpdated":"2026-05-11T19:38:06.225Z"},"containers":{"cna":{"providerMetadata":{"orgId":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","shortName":"Linux","dateUpdated":"2026-05-11T19:38:06.225Z"},"descriptions":[{"lang":"en","value":"In the Linux kernel, the following vulnerability has been resolved:\n\nscsi: scsi_dh_alua: Fix memleak for 'qdata' in alua_activate()\n\nIf alua_rtpg_queue() failed from alua_activate(), then 'qdata' is not\nfreed, which will cause following memleak:\n\nunreferenced object 0xffff88810b2c6980 (size 32):\n  comm \"kworker/u16:2\", pid 635322, jiffies 4355801099 (age 1216426.076s)\n  hex dump (first 32 bytes):\n    00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................\n    40 39 24 c1 ff ff ff ff 00 f8 ea 0a 81 88 ff ff  @9$.............\n  backtrace:\n    [<0000000098f3a26d>] alua_activate+0xb0/0x320\n    [<000000003b529641>] scsi_dh_activate+0xb2/0x140\n    [<000000007b296db3>] activate_path_work+0xc6/0xe0 [dm_multipath]\n    [<000000007adc9ace>] process_one_work+0x3c5/0x730\n    [<00000000c457a985>] worker_thread+0x93/0x650\n    [<00000000cb80e628>] kthread+0x1ba/0x210\n    [<00000000a1e61077>] ret_from_fork+0x22/0x30\n\nFix the problem by freeing 'qdata' in error path."}],"affected":[{"product":"Linux","vendor":"Linux","defaultStatus":"unaffected","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","programFiles":["drivers/scsi/device_handler/scsi_dh_alua.c"],"versions":[{"version":"625fe857e4fac6518716f3c0ff5e5deb8ec6d238","lessThan":"123483df146492ca22b503ae6dacc2ce7c3a3974","status":"affected","versionType":"git"},{"version":"625fe857e4fac6518716f3c0ff5e5deb8ec6d238","lessThan":"c110051d335ef7f62ad33474b0c23997fee5bfb5","status":"affected","versionType":"git"},{"version":"625fe857e4fac6518716f3c0ff5e5deb8ec6d238","lessThan":"5c4d71424df34fc23dc5336d09394ce68c849542","status":"affected","versionType":"git"},{"version":"625fe857e4fac6518716f3c0ff5e5deb8ec6d238","lessThan":"c09cdf6eb815ee35e55d6c50ac7f63db58bd20b8","status":"affected","versionType":"git"},{"version":"625fe857e4fac6518716f3c0ff5e5deb8ec6d238","lessThan":"9311e7a554dffd3823499e309a8b86a5cd1540e5","status":"affected","versionType":"git"},{"version":"625fe857e4fac6518716f3c0ff5e5deb8ec6d238","lessThan":"1c55982beb80c7d3c30278fc6cfda8496a31dbe6","status":"affected","versionType":"git"},{"version":"625fe857e4fac6518716f3c0ff5e5deb8ec6d238","lessThan":"0d89254a4320eb7de0970c478172f764125c6355","status":"affected","versionType":"git"},{"version":"625fe857e4fac6518716f3c0ff5e5deb8ec6d238","lessThan":"a13faca032acbf2699293587085293bdfaafc8ae","status":"affected","versionType":"git"},{"version":"68b275b7cbf065a8ea9b964cbb7d78d2b63c635f","status":"affected","versionType":"git"},{"version":"2b1725d1df362499f6bbd5a7e245a4090b29c2bb","status":"affected","versionType":"git"}]},{"product":"Linux","vendor":"Linux","defaultStatus":"affected","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","programFiles":["drivers/scsi/device_handler/scsi_dh_alua.c"],"versions":[{"version":"4.11","status":"affected"},{"version":"0","lessThan":"4.11","status":"unaffected","versionType":"semver"},{"version":"4.14.312","lessThanOrEqual":"4.14.*","status":"unaffected","versionType":"semver"},{"version":"4.19.280","lessThanOrEqual":"4.19.*","status":"unaffected","versionType":"semver"},{"version":"5.4.240","lessThanOrEqual":"5.4.*","status":"unaffected","versionType":"semver"},{"version":"5.10.177","lessThanOrEqual":"5.10.*","status":"unaffected","versionType":"semver"},{"version":"5.15.105","lessThanOrEqual":"5.15.*","status":"unaffected","versionType":"semver"},{"version":"6.1.22","lessThanOrEqual":"6.1.*","status":"unaffected","versionType":"semver"},{"version":"6.2.9","lessThanOrEqual":"6.2.*","status":"unaffected","versionType":"semver"},{"version":"6.3","lessThanOrEqual":"*","status":"unaffected","versionType":"original_commit_for_fix"}]}],"cpeApplicability":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"4.11","versionEndExcluding":"4.14.312"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"4.11","versionEndExcluding":"4.19.280"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"4.11","versionEndExcluding":"5.4.240"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"4.11","versionEndExcluding":"5.10.177"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"4.11","versionEndExcluding":"5.15.105"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"4.11","versionEndExcluding":"6.1.22"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"4.11","versionEndExcluding":"6.2.9"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"4.11","versionEndExcluding":"6.3"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"4.9.21"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"4.10.9"}]}]}],"references":[{"url":"https://git.kernel.org/stable/c/123483df146492ca22b503ae6dacc2ce7c3a3974"},{"url":"https://git.kernel.org/stable/c/c110051d335ef7f62ad33474b0c23997fee5bfb5"},{"url":"https://git.kernel.org/stable/c/5c4d71424df34fc23dc5336d09394ce68c849542"},{"url":"https://git.kernel.org/stable/c/c09cdf6eb815ee35e55d6c50ac7f63db58bd20b8"},{"url":"https://git.kernel.org/stable/c/9311e7a554dffd3823499e309a8b86a5cd1540e5"},{"url":"https://git.kernel.org/stable/c/1c55982beb80c7d3c30278fc6cfda8496a31dbe6"},{"url":"https://git.kernel.org/stable/c/0d89254a4320eb7de0970c478172f764125c6355"},{"url":"https://git.kernel.org/stable/c/a13faca032acbf2699293587085293bdfaafc8ae"}],"title":"scsi: scsi_dh_alua: Fix memleak for 'qdata' in alua_activate()","x_generator":{"engine":"bippy-1.2.0"}}}}