发布于3月6日3月6日 Members Ubuntu: (CVE-2023-22996): linux-oem-5.17 vulnerability Severity 5 CVSS (AV:L/AC:L/Au:S/C:N/I:N/A:C) Published 02/28/2023 Created 11/21/2024 Added 11/19/2024 Modified 01/28/2025 Description In the Linux kernel before 5.17.2, drivers/soc/qcom/qcom_aoss.c does not release an of_find_device_by_node reference after use, e.g., with put_device. Solution(s) ubuntu-upgrade-linux-oem-5-17 References https://attackerkb.com/topics/cve-2023-22996 CVE - 2023-22996 https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.17.2 https://git.kernel.org/linus/4b41a9d0fe3db5f91078a380f62f0572c3ecf2dd https://github.com/torvalds/linux/commit/4b41a9d0fe3db5f91078a380f62f0572c3ecf2dd https://www.cve.org/CVERecord?id=CVE-2023-22996