CVE-2023-53864
published 2025-12-09CVE-2023-53864: In the Linux kernel, the following vulnerability has been resolved: drm/mxsfb: Disable overlay plane in mxsfb_plane_overlay_atomic_disable() When disabling…
PriorityP421high8.8
EPSS
0.22%
12.1th percentile
In the Linux kernel, the following vulnerability has been resolved:
drm/mxsfb: Disable overlay plane in mxsfb_plane_overlay_atomic_disable()
When disabling overlay plane in mxsfb_plane_overlay_atomic_update(),
overlay plane's framebuffer pointer is NULL. So, dereferencing it would
cause a kernel Oops(NULL pointer dereferencing). Fix the issue by
disabling overlay plane in mxsfb_plane_overlay_atomic_disable() instead.
Affected
10 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 6.1.55-1 (bookworm) | linux 6.1.55-1 (bookworm) |
| linux | linux | — | — |
| linux | linux | >= cb285a5348e768dbc8edfe28cc2be5ec0c7e1a33 < 8bf2d4ca521d3acb57fc1607386e749b3cc92aaf | 8bf2d4ca521d3acb57fc1607386e749b3cc92aaf |
| linux | linux | >= cb285a5348e768dbc8edfe28cc2be5ec0c7e1a33 < 0f98de0a11d29821d9448114178ddc1b1fe32a18 | 0f98de0a11d29821d9448114178ddc1b1fe32a18 |
| linux | linux | >= cb285a5348e768dbc8edfe28cc2be5ec0c7e1a33 < aa656d48e871a1b062e1bbf9474d8b831c35074c | aa656d48e871a1b062e1bbf9474d8b831c35074c |
| linux | linux_kernel | >= 0 < 6.1.55-1 | 6.1.55-1 |
| linux | linux_kernel | >= 0 < 6.5.6-1 | 6.5.6-1 |
| linux | linux_kernel | >= 0 < 6.5.6-1 | 6.5.6-1 |
| linux | linux_kernel | >= 5.19.0 < 6.1.54 | 6.1.54 |
| linux | linux_kernel | >= 6.2.0 < 6.5.4 | 6.5.4 |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
drm/mxsfb: Disable overlay plane in mxsfb_plane_overlay_atomic_disable()
osv·2025-12-09
CVE-2023-53864 drm/mxsfb: Disable overlay plane in mxsfb_plane_overlay_atomic_disable()
drm/mxsfb: Disable overlay plane in mxsfb_plane_overlay_atomic_disable()
In the Linux kernel, the following vulnerability has been resolved:
drm/mxsfb: Disable overlay plane in mxsfb_plane_overlay_atomic_disable()
When disabling overlay plane in mxsfb_plane_overlay_atomic_update(),
overlay plane's framebuffer pointer is NULL. So, dereferencing it would
cause a kernel Oops(NULL pointer dereferencing). Fix the issue by
disabling overlay plane in mxsfb_plane_overlay_atomic_disable() instead.
OSV
CVE-2023-53864: In the Linux kernel, the following vulnerability has been resolved: drm/mxsfb: Disable overlay plane in mxsfb_plane_overlay_atomic_disable() When disa
osv·2025-12-09
CVE-2023-53864 CVE-2023-53864: In the Linux kernel, the following vulnerability has been resolved: drm/mxsfb: Disable overlay plane in mxsfb_plane_overlay_atomic_disable() When disa
In the Linux kernel, the following vulnerability has been resolved: drm/mxsfb: Disable overlay plane in mxsfb_plane_overlay_atomic_disable() When disabling overlay plane in mxsfb_plane_overlay_atomic_update(), overlay plane's framebuffer pointer is NULL. So, dereferencing it would cause a kernel Oops(NULL pointer dereferencing). Fix the issue by disabling overlay plane in mxsfb_plane_overlay_atomic_disable() instead.
GHSA
GHSA-mm25-cp37-hg3x: In the Linux kernel, the following vulnerability has been resolved:
drm/mxsfb: Disable overlay plane in mxsfb_plane_overlay_atomic_disable()
When di
ghsa_unreviewed·2025-12-09
CVE-2023-53864 GHSA-mm25-cp37-hg3x: In the Linux kernel, the following vulnerability has been resolved:
drm/mxsfb: Disable overlay plane in mxsfb_plane_overlay_atomic_disable()
When di
In the Linux kernel, the following vulnerability has been resolved:
drm/mxsfb: Disable overlay plane in mxsfb_plane_overlay_atomic_disable()
When disabling overlay plane in mxsfb_plane_overlay_atomic_update(),
overlay plane's framebuffer pointer is NULL. So, dereferencing it would
cause a kernel Oops(NULL pointer dereferencing). Fix the issue by
disabling overlay plane in mxsfb_plane_overlay_atomic_disable() instead.
Red Hat
kernel: drm/mxsfb: Disable overlay plane in mxsfb_plane_overlay_atomic_disable()
vendor_redhat·2025-12-09
CVE-2023-53864 kernel: drm/mxsfb: Disable overlay plane in mxsfb_plane_overlay_atomic_disable()
kernel: drm/mxsfb: Disable overlay plane in mxsfb_plane_overlay_atomic_disable()
In the Linux kernel, the following vulnerability has been resolved:
drm/mxsfb: Disable overlay plane in mxsfb_plane_overlay_atomic_disable()
When disabling overlay plane in mxsfb_plane_overlay_atomic_update(),
overlay plane's framebuffer pointer is NULL. So, dereferencing it would
cause a kernel Oops(NULL pointer dereferencing). Fix the issue by
disabling overlay plane in mxsfb_plane_overlay_atomic_disable() instead.
Package: kernel (Red Hat Enterprise Linux 10) - Not affected
Package: kernel (Red Hat Enterprise Linux 6) - Not affected
Package: kernel (Red Hat Enterprise Linux 7) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 7) - Not affected
Package: kernel (Red Hat Enterprise Linux 8) - N
Debian
CVE-2023-53864: linux - In the Linux kernel, the following vulnerability has been resolved: drm/mxsfb: ...
vendor_debian·2023
CVE-2023-53864 CVE-2023-53864: linux - In the Linux kernel, the following vulnerability has been resolved: drm/mxsfb: ...
In the Linux kernel, the following vulnerability has been resolved: drm/mxsfb: Disable overlay plane in mxsfb_plane_overlay_atomic_disable() When disabling overlay plane in mxsfb_plane_overlay_atomic_update(), overlay plane's framebuffer pointer is NULL. So, dereferencing it would cause a kernel Oops(NULL pointer dereferencing). Fix the issue by disabling overlay plane in mxsfb_plane_overlay_atomic_disable() instead.
Scope: local
bookworm: resolved (fixed in 6.1.55-1)
bullseye: resolved
forky: resolved (fixed in 6.5.6-1)
sid: resolved (fixed in 6.5.6-1)
trixie: resolved (fixed in 6.5.6-1)
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2023-53864 kernel: drm/mxsfb: Disable overlay plane in mxsfb_plane_overlay_atomic_disable()
bugzilla·2025-12-09
CVE-2023-53864 CVE-2023-53864 kernel: drm/mxsfb: Disable overlay plane in mxsfb_plane_overlay_atomic_disable()
CVE-2023-53864 kernel: drm/mxsfb: Disable overlay plane in mxsfb_plane_overlay_atomic_disable()
In the Linux kernel, the following vulnerability has been resolved:
drm/mxsfb: Disable overlay plane in mxsfb_plane_overlay_atomic_disable()
When disabling overlay plane in mxsfb_plane_overlay_atomic_update(),
overlay plane's framebuffer pointer is NULL. So, dereferencing it would
cause a kernel Oops(NULL pointer dereferencing). Fix the issue by
disabling overlay plane in mxsfb_plane_overlay_atomic_disable() instead.
Discussion:
Upstream advisory:
https://lore.kernel.org/linux-cve-announce/2025120906-CVE-2023-53864-8bca@gregkh/T
HackerOne
CVE-2023-27533: Telnet option IAC injection
hackerone·2023-03-22·CVSS 8.8
CVE-2023-27533 [HIGH] CVE-2023-27533: Telnet option IAC injection
CVE-2023-27533: Telnet option IAC injection
## Summary:
`CURLOPT_TELNETOPTIONS` allows setting various telnet options for telnet protocol. Due to missing encoding of "Interpret as Command" `IAC` (0xff) character, the attacker who can control these option values can escape out of the telnet subnegotiation and enter arbitrary TELNET commands (*) via the `CURLOPT_TELNETOPTIONS` options. `TTYPE`, `XDISPLOC` and `NEW_ENV` options are affected.
*) TELNET command refers to "TELNET COMMAND STRUCTURE" in RFC 854
## Steps To Reproduce:
1. `curl --telnet-option NEW_ENV=a,b$(echo -ne "\xff\xf0INJECTED") telnet://server`
When inspected with tcpdump:
```
20:57:34.454720 IP x.x.x.x.53864 > y.y.y.y.telnet: Flags [P.], seq 17:37, ack 22, win 2058, options [nop,nop,TS val 1459077881 ecr 3403052525], le
Wiz
CVE-2023-53864 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz
CVE-2023-53864 CVE-2023-53864 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2023-53864 :
Linux Kernel vulnerability analysis and mitigation
In the Linux kernel, the following vulnerability has been resolved:
drm/mxsfb: Disable overlay plane in mxsfb_plane_overlay_atomic_disable()
When disabling overlay plane in mxsfb_plane_overlay_atomic_update(),
overlay plane's framebuffer pointer is NULL. So, dereferencing it would
cause a kernel Oops(NULL pointer dereferencing). Fix the issue by
disabling overlay plane in mxsfb_plane_overlay_atomic_disable() instead.
Source : NVD
Published December 9, 2025
CNA Score N/A
Affected Technologies
Linux Kernel
Linux Debian
Has Public Exploit No
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 6.8
Exploitation Probability (EPSS) N/A
Affected pac
2025-12-09
Published