cbcvebase.
CVE-2023-53571
published 2025-10-04

CVE-2023-53571: In the Linux kernel, the following vulnerability has been resolved: drm/i915: Make intel_get_crtc_new_encoder() less oopsy The point of the WARN was to print…

PriorityP418medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.14%
3.5th percentile
In the Linux kernel, the following vulnerability has been resolved: drm/i915: Make intel_get_crtc_new_encoder() less oopsy The point of the WARN was to print something, not oops straight up. Currently that is precisely what happens if we can't find the connector for the crtc in the atomic state. Get the dev pointer from the atomic state instead of the potentially NULL encoder to avoid that. (cherry picked from commit 3b6692357f70498f617ea1b31a0378070a0acf1c)

Affected

17 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.37-1 (bookworm)linux 6.1.37-1 (bookworm)
linuxlinux
linuxlinux>= 3a47ae201e074945bbde0b088e4c1215c07f4d75 < 780f303233c35eeb5132e3ee1cbc8f4cebe86dd2780f303233c35eeb5132e3ee1cbc8f4cebe86dd2
linuxlinux>= 3a47ae201e074945bbde0b088e4c1215c07f4d75 < 54202488c835dab8c648acd107f0bb8eaa69989454202488c835dab8c648acd107f0bb8eaa699894
linuxlinux>= 3a47ae201e074945bbde0b088e4c1215c07f4d75 < 0fe6ef82e4f4764e8f556632e4cd93d78d448e990fe6ef82e4f4764e8f556632e4cd93d78d448e99
linuxlinux>= 3a47ae201e074945bbde0b088e4c1215c07f4d75 < 8cd725315c559a8a4d18ac1d7fce1d6b9a6675298cd725315c559a8a4d18ac1d7fce1d6b9a667529
linuxlinux>= 3a47ae201e074945bbde0b088e4c1215c07f4d75 < fd8b0abecdf66379e9d25d7448b942b5be379cb2fd8b0abecdf66379e9d25d7448b942b5be379cb2
linuxlinux>= 3a47ae201e074945bbde0b088e4c1215c07f4d75 < 631420b06597a33c72b6dcef78d1c2dea17f452d631420b06597a33c72b6dcef78d1c2dea17f452d
linuxlinux_kernel>= 0 < 5.10.191-15.10.191-1
linuxlinux_kernel>= 0 < 6.1.37-16.1.37-1
linuxlinux_kernel>= 0 < 6.3.7-16.3.7-1
linuxlinux_kernel>= 0 < 6.3.7-16.3.7-1
linuxlinux_kernel>= 5.11 < 5.15.1115.15.111
linuxlinux_kernel>= 5.16 < 6.1.286.1.28
linuxlinux_kernel>= 5.7 < 5.10.1805.10.180
linuxlinux_kernel>= 6.2 < 6.2.156.2.15
linuxlinux_kernel>= 6.3 < 6.3.26.3.2

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.