Vulnerability Description
In the Linux kernel, the following vulnerability has been resolved: drm/msm/dpu: check for null return of devm_kzalloc() in dpu_writeback_init() Because of the possilble failure of devm_kzalloc(), dpu_wb_conn might be NULL and will cause null pointer dereference later. Therefore, it might be better to check it and directly return -ENOMEM. Patchwork: https://patchwork.freedesktop.org/patch/512277/ [DB: fixed typo in commit message]
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Linux | Linux Kernel | >= 5.19, < 6.1.16 |
Related Weaknesses (CWE)
References
- https://git.kernel.org/stable/c/21e9a838f505178e109ccb3bf19d7808eb0326f4Patch
- https://git.kernel.org/stable/c/3723c4dbcd14cc96771000ce0b0540801e6ba059Patch
- https://git.kernel.org/stable/c/5ee51b19855c5dd72aca57b8014f3b70d7798733Patch
FAQ
What is CVE-2023-53284?
CVE-2023-53284 is a vulnerability with a CVSS score of 5.5 (MEDIUM). In the Linux kernel, the following vulnerability has been resolved: drm/msm/dpu: check for null return of devm_kzalloc() in dpu_writeback_init() Because of the possilble failure of devm_kzalloc(), d...
How severe is CVE-2023-53284?
CVE-2023-53284 has been rated MEDIUM with a CVSS base score of 5.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2023-53284?
Check the references section above for vendor advisories and patch information. Affected products include: Linux Linux Kernel.