cbcvebase.
CVE-2023-53242
published 2025-09-15

CVE-2023-53242: In the Linux kernel, the following vulnerability has been resolved: thermal/drivers/hisi: Drop second sensor hi3660 The commit 74c8e6bffbe1 ("driver core: Add…

PriorityP419medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.15%
4.6th percentile
In the Linux kernel, the following vulnerability has been resolved: thermal/drivers/hisi: Drop second sensor hi3660 The commit 74c8e6bffbe1 ("driver core: Add __alloc_size hint to devm allocators") exposes a panic "BRK handler: Fatal exception" on the hi3660_thermal_probe funciton. This is because the function allocates memory for only one sensors array entry, but tries to fill up a second one. Fix this by removing the unneeded second access.

Affected

19 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.20-1 (bookworm)linux 6.1.20-1 (bookworm)
linuxlinux
linuxlinux>= 7d3a2a2bbadb4bf5856ed394ba09b8fbb7a80460 < 3cf2181e438f43ed24e12424fe36d156cca233b93cf2181e438f43ed24e12424fe36d156cca233b9
linuxlinux>= 7d3a2a2bbadb4bf5856ed394ba09b8fbb7a80460 < e02bc492883abf751fd1a8d89fc025fbce6744c6e02bc492883abf751fd1a8d89fc025fbce6744c6
linuxlinux>= 7d3a2a2bbadb4bf5856ed394ba09b8fbb7a80460 < f5aaf140ab1c02889c088e1b1098adad600541aff5aaf140ab1c02889c088e1b1098adad600541af
linuxlinux>= 7d3a2a2bbadb4bf5856ed394ba09b8fbb7a80460 < 9f6756cd09889c7201ee31e6f76fbd914fb0b80d9f6756cd09889c7201ee31e6f76fbd914fb0b80d
linuxlinux>= 7d3a2a2bbadb4bf5856ed394ba09b8fbb7a80460 < 68e675a9b69cfc34dd915d91a4650e3ee53421f468e675a9b69cfc34dd915d91a4650e3ee53421f4
linuxlinux>= 7d3a2a2bbadb4bf5856ed394ba09b8fbb7a80460 < 15cc25829a97c3957e520e971868aacc8434131715cc25829a97c3957e520e971868aacc84341317
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.178-15.10.178-1
linuxlinux_kernel>= 0 < 6.1.20-16.1.20-1
linuxlinux_kernel>= 0 < 6.1.20-16.1.20-1
linuxlinux_kernel>= 0 < 6.1.20-16.1.20-1
linuxlinux_kernel>= 4.20.1 < 5.4.2355.4.235
linuxlinux_kernel>= 5.11 < 5.15.995.15.99
linuxlinux_kernel>= 5.16 < 6.1.166.1.16
linuxlinux_kernel>= 5.5 < 5.10.1735.10.173
linuxlinux_kernel>= 6.2 < 6.2.36.2.3

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.