CVE-2023-53625NULL Pointer Dereference in Linux

Severity
5.5MEDIUMNVD
EPSS
0.0%
top 97.14%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedOct 7
Latest updateApr 20

Description

In the Linux kernel, the following vulnerability has been resolved: drm/i915/gvt: fix vgpu debugfs clean in remove Check carefully on root debugfs available when destroying vgpu, e.g in remove case drm minor's debugfs root might already be destroyed, which led to kernel oops like below. Console: switching to colour dummy device 80x25 i915 0000:00:02.0: MDEV: Unregistering intel_vgpu_mdev b1338b2d-a709-4c23-b766-cc436c36cdf0: Removing from iommu group 14 BUG: kernel NULL pointer dereference, a

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:HExploitability: 1.8 | Impact: 3.6

Affected Packages4 packages

NVDlinux/linux_kernel4.165.10.163+4
Debianlinux/linux_kernel< 5.10.178-1+3
CVEListV5linux/linuxbc7b0be316aebac42eb9e8e54c984609555944daaf90f8b36d78544433a48a3eda6a5faeafacd0a1+5
debiandebian/linux< linux 6.1.7-1 (bookworm)

Patches

🔴Vulnerability Details

3
VulDB
Linux Kernel up to 5.10.162/5.15.86/6.0.18/6.1.4 intel_vgpu_mdev null pointer dereference (WID-SEC-2025-2229)2026-04-20
OSV
CVE-2023-53625: In the Linux kernel, the following vulnerability has been resolved: drm/i915/gvt: fix vgpu debugfs clean in remove Check carefully on root debugfs ava2025-10-07
GHSA
GHSA-mx3r-64m3-f78g: In the Linux kernel, the following vulnerability has been resolved: drm/i915/gvt: fix vgpu debugfs clean in remove Check carefully on root debugfs a2025-10-07

📋Vendor Advisories

2
Red Hat
kernel: drm/i915/gvt: fix vgpu debugfs clean in remove2025-10-07
Debian
CVE-2023-53625: linux - In the Linux kernel, the following vulnerability has been resolved: drm/i915/gv...2023