Vulnerability Description
In the Linux kernel, the following vulnerability has been resolved: powerpc/imc-pmu: Add a null pointer check in update_events_in_group() kasprintf() returns a pointer to dynamically allocated memory which can be NULL upon failure.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Linux | Linux Kernel | >= 4.14, < 4.19.306 |
Related Weaknesses (CWE)
References
- https://git.kernel.org/stable/c/024352f7928b28f53609660663329d8c0f4ad032Mailing ListPatch
- https://git.kernel.org/stable/c/0a233867a39078ebb0f575e2948593bbff5826b3Mailing ListPatch
- https://git.kernel.org/stable/c/1e80aa25d186a7aa212df5acd8c75f55ac8dae34Mailing ListPatch
- https://git.kernel.org/stable/c/5a669f3511d273c8c1ab1c1d268fbcdf53fc7a05Mailing ListPatch
- https://git.kernel.org/stable/c/75fc599bcdcb1de093c9ced2e3cccc832f3787f3Mailing ListPatch
- https://git.kernel.org/stable/c/a2da3f9b1a1019c887ee1d164475a8fcdb0a3fecMailing ListPatch
- https://git.kernel.org/stable/c/c7d828e12b326ea50fb80c369d7aa87519ed14c6Mailing ListPatch
- https://git.kernel.org/stable/c/f105c263009839d80fad6998324a4e1b3511cba0Mailing ListPatch
- https://git.kernel.org/stable/c/024352f7928b28f53609660663329d8c0f4ad032Mailing ListPatch
- https://git.kernel.org/stable/c/0a233867a39078ebb0f575e2948593bbff5826b3Mailing ListPatch
- https://git.kernel.org/stable/c/1e80aa25d186a7aa212df5acd8c75f55ac8dae34Mailing ListPatch
- https://git.kernel.org/stable/c/5a669f3511d273c8c1ab1c1d268fbcdf53fc7a05Mailing ListPatch
- https://git.kernel.org/stable/c/75fc599bcdcb1de093c9ced2e3cccc832f3787f3Mailing ListPatch
- https://git.kernel.org/stable/c/a2da3f9b1a1019c887ee1d164475a8fcdb0a3fecMailing ListPatch
- https://git.kernel.org/stable/c/c7d828e12b326ea50fb80c369d7aa87519ed14c6Mailing ListPatch
FAQ
What is CVE-2023-52675?
CVE-2023-52675 is a vulnerability with a CVSS score of 5.5 (MEDIUM). In the Linux kernel, the following vulnerability has been resolved: powerpc/imc-pmu: Add a null pointer check in update_events_in_group() kasprintf() returns a pointer to dynamically allocated memor...
How severe is CVE-2023-52675?
CVE-2023-52675 has been rated MEDIUM with a CVSS base score of 5.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2023-52675?
Check the references section above for vendor advisories and patch information. Affected products include: Linux Linux Kernel.