cbcvebase.
CVE-2023-52686
published 2024-05-17

CVE-2023-52686: In the Linux kernel, the following vulnerability has been resolved: powerpc/powernv: Add a null pointer check in opal_event_init() kasprintf() returns a…

PriorityP418medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.25%
16.3th percentile
In the Linux kernel, the following vulnerability has been resolved: powerpc/powernv: Add a null pointer check in opal_event_init() kasprintf() returns a pointer to dynamically allocated memory which can be NULL upon failure.

Affected

22 ranges
VendorProductVersion rangeFixed in
debiandebian_linux
debianlinux< linux 6.1.76-1 (bookworm)linux 6.1.76-1 (bookworm)
linuxlinux
linuxlinux>= 2717a33d60745f2f72e521cdaedf79b00f66f8ca < 8422d179cf46889c15ceff9ede48c5bfa4e7f0b48422d179cf46889c15ceff9ede48c5bfa4e7f0b4
linuxlinux>= 2717a33d60745f2f72e521cdaedf79b00f66f8ca < e93d7cf4c1ddbcd846739e7ad849f955a4f18031e93d7cf4c1ddbcd846739e7ad849f955a4f18031
linuxlinux>= 2717a33d60745f2f72e521cdaedf79b00f66f8ca < e6ad05e3ae9c84c5a71d7bb2d44dc845ae7990cfe6ad05e3ae9c84c5a71d7bb2d44dc845ae7990cf
linuxlinux>= 2717a33d60745f2f72e521cdaedf79b00f66f8ca < c0b111ea786ddcc8be0682612830796ece9436c7c0b111ea786ddcc8be0682612830796ece9436c7
linuxlinux>= 2717a33d60745f2f72e521cdaedf79b00f66f8ca < 9a523e1da6d88c2034f946adfa4f74b236c95ca99a523e1da6d88c2034f946adfa4f74b236c95ca9
linuxlinux>= 2717a33d60745f2f72e521cdaedf79b00f66f8ca < a14c55eb461d630b836f80591d8caf1f74e62877a14c55eb461d630b836f80591d8caf1f74e62877
linuxlinux>= 2717a33d60745f2f72e521cdaedf79b00f66f8ca < e08c2e275fa1874de945b87093f925997722ee42e08c2e275fa1874de945b87093f925997722ee42
linuxlinux>= 2717a33d60745f2f72e521cdaedf79b00f66f8ca < 8649829a1dd25199bbf557b2621cedb4bf9b30508649829a1dd25199bbf557b2621cedb4bf9b3050
linuxlinux_kernel>= 0 < 5.10.209-15.10.209-1
linuxlinux_kernel>= 0 < 6.1.76-16.1.76-1
linuxlinux_kernel>= 0 < 6.6.15-16.6.15-1
linuxlinux_kernel>= 0 < 6.6.15-16.6.15-1
linuxlinux_kernel>= 4.11 < 4.19.3064.19.306
linuxlinux_kernel>= 4.20 < 5.4.2685.4.268
linuxlinux_kernel>= 5.11 < 5.15.1485.15.148
linuxlinux_kernel>= 5.16 < 6.1.756.1.75
linuxlinux_kernel>= 5.5 < 5.10.2095.10.209
linuxlinux_kernel>= 6.2 < 6.6.146.6.14
linuxlinux_kernel>= 6.7 < 6.7.26.7.2

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv7.5HIGH
vendor_ubuntu6.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.