CVE-2023-54146: Linux

EPSS: 0.2% chance of exploitation in the next 30 days.

In the Linux kernel, the following vulnerability has been resolved: x86/kexec: Fix double-free of elf header buffer After b3e34a47f989 ("x86/kexec: fix memory leak of elf header buffer"), freeing image->elf_headers in the error path of crash_load_segments() is not needed because kimage_file_post_load_cleanup() will take care of that later. And not clearing it could result in a double-free. Drop the superfluous vfree() call at the error path of crash_load_segments().

Affected products

  • Linux Linux: from 5.15.46, before 5.15.87 (fixed in 5.15.87); from 5.17.14, before 5.18 (fixed in 5.18); from 5.18.3, before 5.19 (fixed in 5.19); from 5.19, before 6.0.19 (fixed in 6.0.19); from 6.1, before 6.1.5 (fixed in 6.1.5)

Published 2025-12-24. Last modified 2026-06-17.