cbcvebase.
CVE-2023-52844
published 2024-05-21

CVE-2023-52844: In the Linux kernel, the following vulnerability has been resolved: media: vidtv: psi: Add check for kstrdup Add check for the return value of kstrdup() and…

PriorityP419medium6.2CVSS 3.1
AVLACLPRNUINSUCNINAH
EPSS
0.25%
16.6th percentile
In the Linux kernel, the following vulnerability has been resolved: media: vidtv: psi: Add check for kstrdup Add check for the return value of kstrdup() and return the error if it fails in order to avoid NULL pointer dereference.

Affected

17 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.64-1 (bookworm)linux 6.1.64-1 (bookworm)
linuxlinux
linuxlinux>= f90cf6079bf67988f8b1ad1ade70fc89d0080905 < 3387490c89b10aeb4e71d78b65dbc9ba4b2385b93387490c89b10aeb4e71d78b65dbc9ba4b2385b9
linuxlinux>= f90cf6079bf67988f8b1ad1ade70fc89d0080905 < d17269fb9161995303985ab2fe6f16cfb72152f9d17269fb9161995303985ab2fe6f16cfb72152f9
linuxlinux>= f90cf6079bf67988f8b1ad1ade70fc89d0080905 < 5c26aae3723965c291c65dd2ecad6a3240d422b05c26aae3723965c291c65dd2ecad6a3240d422b0
linuxlinux>= f90cf6079bf67988f8b1ad1ade70fc89d0080905 < 5cfcc8de7d733a1137b86954cc28ce99972311ad5cfcc8de7d733a1137b86954cc28ce99972311ad
linuxlinux>= f90cf6079bf67988f8b1ad1ade70fc89d0080905 < a51335704a3f90eaf23a6864faefca34b382490aa51335704a3f90eaf23a6864faefca34b382490a
linuxlinux>= f90cf6079bf67988f8b1ad1ade70fc89d0080905 < 76a2c5df6ca8bd8ada45e953b8c72b746f42918d76a2c5df6ca8bd8ada45e953b8c72b746f42918d
linuxlinux_kernel>= 0 < 5.10.205-15.10.205-1
linuxlinux_kernel>= 0 < 6.1.64-16.1.64-1
linuxlinux_kernel>= 0 < 6.6.8-16.6.8-1
linuxlinux_kernel>= 0 < 6.6.8-16.6.8-1
linuxlinux_kernel>= 5.10 < 5.10.2015.10.201
linuxlinux_kernel>= 5.11 < 5.15.1395.15.139
linuxlinux_kernel>= 5.16 < 6.1.636.1.63
linuxlinux_kernel>= 6.2 < 6.5.126.5.12
linuxlinux_kernel>= 6.6 < 6.6.26.6.2

CVSS provenance

nvdv3.16.2MEDIUMCVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
osv6.2MEDIUM
vendor_debian6.2MEDIUM
vendor_redhat6.2MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.