vulnerability
Ubuntu: (CVE-2023-52684): linux-raspi-realtime vulnerability
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 5 | (AV:L/AC:L/Au:S/C:N/I:N/A:C) | May 17, 2024 | Feb 11, 2025 | Apr 16, 2026 |
Severity
5
CVSS
(AV:L/AC:L/Au:S/C:N/I:N/A:C)
Published
May 17, 2024
Added
Feb 11, 2025
Modified
Apr 16, 2026
Description
In the Linux kernel, the following vulnerability has been resolved:
firmware: qcom: qseecom: fix memory leaks in error paths
Fix instances of returning error codes directly instead of jumping to
the relevant labels where memory allocated for the SCM calls would be
freed.
Solution
ubuntu-upgrade-linux-raspi-realtime
References
- CVE-2023-52684
- https://attackerkb.com/topics/CVE-2023-52684
- CWE-401
- EUVD-EUVD-2023-57308
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2023-57308
- https://git.kernel.org/linus/6c57d7b593c4a4e60db65d5ce0fe1d9f79ccbe9b
- https://git.kernel.org/stable/c/6c57d7b593c4a4e60db65d5ce0fe1d9f79ccbe9b
- https://git.kernel.org/stable/c/85fdbf6840455be64eac16bdfe0df3368ee3d0f0
- https://www.cve.org/CVERecord?id=CVE-2023-52684
Rapid7 Labs
2026 Global Threat Landscape Report
The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.