CVE-2023-53177Linux vulnerability

5 documents5 sources
Severity
5.5MEDIUMNVD
EPSS
0.0%
top 97.72%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedSep 15

Description

In the Linux kernel, the following vulnerability has been resolved: media: hi846: fix usage of pm_runtime_get_if_in_use() pm_runtime_get_if_in_use() does not only return nonzero values when the device is in use, it can return a negative errno too. And especially during resuming from system suspend, when runtime pm is not yet up again, -EAGAIN is being returned, so the subsequent pm_runtime_put() call results in a refcount underflow. Fix system-resume by handling -EAGAIN of pm_runtime_get_if_

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:HExploitability: 1.8 | Impact: 3.6

Affected Packages4 packages

NVDlinux/linux_kernel5.166.1.39+1
Debianlinux/linux_kernel< 6.1.52-1+2
CVEListV5linux/linuxe8c0882685f9152f0d729664a12bcbe749cb773642ec6269f98edd915ee37da3c6456bb6243ea56a+3
debiandebian/linux< linux 6.1.52-1 (bookworm)

Patches

🔴Vulnerability Details

2
OSV
CVE-2023-53177: In the Linux kernel, the following vulnerability has been resolved: media: hi846: fix usage of pm_runtime_get_if_in_use() pm_runtime_get_if_in_use() d2025-09-15
GHSA
GHSA-8v2f-4w7g-97h8: In the Linux kernel, the following vulnerability has been resolved: media: hi846: fix usage of pm_runtime_get_if_in_use() pm_runtime_get_if_in_use()2025-09-15

📋Vendor Advisories

2
Red Hat
kernel: media: hi846: fix usage of pm_runtime_get_if_in_use()2025-09-15
Debian
CVE-2023-53177: linux - In the Linux kernel, the following vulnerability has been resolved: media: hi84...2023
CVE-2023-53177 — Linux vulnerability | cvebase