cbcvebase.
CVE-2023-53316
published 2025-09-16

CVE-2023-53316: In the Linux kernel, the following vulnerability has been resolved: drm/msm/dp: Free resources after unregistering them The DP component's unbind operation…

PriorityP339high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.15%
4.6th percentile
In the Linux kernel, the following vulnerability has been resolved: drm/msm/dp: Free resources after unregistering them The DP component's unbind operation walks through the submodules to unregister and clean things up. But if the unbind happens because the DP controller itself is being removed, all the memory for those submodules has just been freed. Change the order of these operations to avoid the many use-after-free that otherwise happens in this code path. Patchwork: https://patchwork.freedesktop.org/patch/542166/

Affected

17 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.52-1 (bookworm)linux 6.1.52-1 (bookworm)
linuxlinux
linuxlinux>= c943b4948b5848fc0e07f875edbd35a973879e22 < c67a55f7cc8d767d624235bf1bcd0947e56abe0fc67a55f7cc8d767d624235bf1bcd0947e56abe0f
linuxlinux>= c943b4948b5848fc0e07f875edbd35a973879e22 < 3c3f3d35f5e05c468b048eb42a4f8c62c66556923c3f3d35f5e05c468b048eb42a4f8c62c6655692
linuxlinux>= c943b4948b5848fc0e07f875edbd35a973879e22 < 4e9f1a2367aea7d61f6781213e25313cd983b0d74e9f1a2367aea7d61f6781213e25313cd983b0d7
linuxlinux>= c943b4948b5848fc0e07f875edbd35a973879e22 < 5c3278db06e332fdc14f3f297499fb88ded264d25c3278db06e332fdc14f3f297499fb88ded264d2
linuxlinux>= c943b4948b5848fc0e07f875edbd35a973879e22 < ca47d0dc00968358c136a1847cfed550cedfd1b5ca47d0dc00968358c136a1847cfed550cedfd1b5
linuxlinux>= c943b4948b5848fc0e07f875edbd35a973879e22 < fa0048a4b1fa7a50c8b0e514f5b428abdf69a6f8fa0048a4b1fa7a50c8b0e514f5b428abdf69a6f8
linuxlinux_kernel>= 0 < 5.10.191-15.10.191-1
linuxlinux_kernel>= 0 < 6.1.52-16.1.52-1
linuxlinux_kernel>= 0 < 6.4.4-16.4.4-1
linuxlinux_kernel>= 0 < 6.4.4-16.4.4-1
linuxlinux_kernel>= 5.10 < 5.10.1885.10.188
linuxlinux_kernel>= 5.11 < 5.15.1215.15.121
linuxlinux_kernel>= 5.16 < 6.1.396.1.39
linuxlinux_kernel>= 6.2 < 6.3.136.3.13
linuxlinux_kernel>= 6.4 < 6.4.46.4.4

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv7.8HIGH
vendor_debian7.8HIGH
vendor_redhat7.8HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.