CVE-2023-54266: Linux
EPSS: 0.2% chance of exploitation in the next 30 days.
In the Linux kernel, the following vulnerability has been resolved: media: dvb-usb: m920x: Fix a potential memory leak in m920x_i2c_xfer() 'read' is freed when it is known to be NULL, but not when a read error occurs. Revert the logic to avoid a small leak, should a m920x_read() call fail.
Affected products
- Linux Linux: from 4.14.263, before 4.14.326 (fixed in 4.14.326); from 4.19.226, before 4.19.295 (fixed in 4.19.295); from 5.4.174, before 5.4.257 (fixed in 5.4.257); from 5.10.94, before 5.10.195 (fixed in 5.10.195); from 5.15.17, before 5.15.132 (fixed in 5.15.132); from 4.4.300, before 4.5 (fixed in 4.5); …
Published 2025-12-30. Last modified 2026-06-17.