CVE-2023-53225: Linux Kernel
Medium severity, CVSS 5.5. EPSS: 0.2% chance of exploitation in the next 30 days.
In the Linux kernel, the following vulnerability has been resolved: spi: imx: Don't skip cleanup in remove's error path Returning early in a platform driver's remove callback is wrong. In this case the dma resources are not released in the error path. this is never retried later and so this is a permanent leak. To fix this, only skip hardware disabling if waking the device fails.
Affected products
- Linux Linux Kernel: from 3.16.57, before 3.17 (fixed in 3.17); from 3.18.94, before 3.19 (fixed in 3.19); from 4.1.50, before 4.2 (fixed in 4.2); from 4.4.115, before 4.5 (fixed in 4.5); from 4.9.80, before 4.10 (fixed in 4.10); from 4.14.17, before 4.15 (fixed in 4.15); …
Published 2025-09-15. Last modified 2026-06-17.