CVE-2023-52695
published 2024-05-17CVE-2023-52695: In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Check writeback connectors in create_validate_stream_for_sink [WHY & HOW]…
PriorityP417medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.19%
9.3th percentile
In the Linux kernel, the following vulnerability has been resolved:
drm/amd/display: Check writeback connectors in create_validate_stream_for_sink
[WHY & HOW]
This is to check connector type to avoid
unhandled null pointer for writeback connectors.
Affected
7 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 6.7.7-1 (forky) | linux 6.7.7-1 (forky) |
| linux | linux | — | — |
| linux | linux | >= 60e034f28600399705d79d4629dddcc301076e54 < 0fe85301b95077ac4fa4a91909d38b7341e81187 | 0fe85301b95077ac4fa4a91909d38b7341e81187 |
| linux | linux | >= 60e034f28600399705d79d4629dddcc301076e54 < dbf5d3d02987faa0eec3710dd687cd912362d7b5 | dbf5d3d02987faa0eec3710dd687cd912362d7b5 |
| linux | linux_kernel | >= 0 < 6.7.7-1 | 6.7.7-1 |
| linux | linux_kernel | >= 0 < 6.7.7-1 | 6.7.7-1 |
| linux | linux_kernel | >= 6.7 < 6.7.2 | 6.7.2 |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5LOW
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
kernel: drm/amd/display: Check writeback connectors in create_validate_stream_for_sink
vendor_redhat·2024-05-17·CVSS 5.5
CVE-2023-52695 [MEDIUM] CWE-400 kernel: drm/amd/display: Check writeback connectors in create_validate_stream_for_sink
kernel: drm/amd/display: Check writeback connectors in create_validate_stream_for_sink
In the Linux kernel, the following vulnerability has been resolved:
drm/amd/display: Check writeback connectors in create_validate_stream_for_sink
[WHY & HOW]
This is to check connector type to avoid
unhandled null pointer for writeback connectors.
A vulnerability was found in the AMD display driver for the Linux kernel. This issue involves insufficient validation of writeback connectors in the create_validate_stream_for_sink function. This issue could allow an attacker with local access to cause a denial of service or escalate privileges.
Statement: Red Hat Enterprise Linux is not vulnerable to this CVE, as it does not affect the versions or configurations of the Linux kernel used in its distribution
Debian
CVE-2023-52695: linux - In the Linux kernel, the following vulnerability has been resolved: drm/amd/dis...
vendor_debian·2023·CVSS 5.5
CVE-2023-52695 [MEDIUM] CVE-2023-52695: linux - In the Linux kernel, the following vulnerability has been resolved: drm/amd/dis...
In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Check writeback connectors in create_validate_stream_for_sink [WHY & HOW] This is to check connector type to avoid unhandled null pointer for writeback connectors.
Scope: local
bookworm: resolved
bullseye: resolved
forky: resolved (fixed in 6.7.7-1)
sid: resolved (fixed in 6.7.7-1)
trixie: resolved (fixed in 6.7.7-1)
VulDB
Linux Kernel up to 6.7.1 AMD Display create_validate_stream_for_sink null pointer dereference (0fe85301b950/dbf5d3d02987 / Nessus ID 250007)
vuldb·2026-07-12·CVSS 5.5
CVE-2023-52695 [MEDIUM] Linux Kernel up to 6.7.1 AMD Display create_validate_stream_for_sink null pointer dereference (0fe85301b950/dbf5d3d02987 / Nessus ID 250007)
A vulnerability described as critical has been identified in Linux Kernel up to 6.7.1. This vulnerability affects the function create_validate_stream_for_sink of the component AMD Display. Such manipulation leads to null pointer dereference.
This vulnerability is traded as CVE-2023-52695. Access to the local network is required for this attack to succeed. There is no exploit available.
Upgrading the affected component is recommended.
OSV
CVE-2023-52695: In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Check writeback connectors in create_validate_stream_for_sink [WH
osv·2024-05-17·CVSS 5.5
CVE-2023-52695 [MEDIUM] CVE-2023-52695: In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Check writeback connectors in create_validate_stream_for_sink [WH
In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Check writeback connectors in create_validate_stream_for_sink [WHY & HOW] This is to check connector type to avoid unhandled null pointer for writeback connectors.
GHSA
GHSA-grmr-5779-p323: In the Linux kernel, the following vulnerability has been resolved:
drm/amd/display: Check writeback connectors in create_validate_stream_for_sink
[
ghsa_unreviewed·2024-05-17
CVE-2023-52695 [MEDIUM] CWE-476 GHSA-grmr-5779-p323: In the Linux kernel, the following vulnerability has been resolved:
drm/amd/display: Check writeback connectors in create_validate_stream_for_sink
[
In the Linux kernel, the following vulnerability has been resolved:
drm/amd/display: Check writeback connectors in create_validate_stream_for_sink
[WHY & HOW]
This is to check connector type to avoid
unhandled null pointer for writeback connectors.
No detection rules found.
No public exploits indexed.
2024-05-17
Published