CVE-2023-54010
published 2025-12-24CVE-2023-54010: In the Linux kernel, the following vulnerability has been resolved: ACPICA: ACPICA: check null return of ACPI_ALLOCATE_ZEROED in acpi_db_display_objects ACPICA…
PriorityP420low5.5
EPSS
0.19%
9.1th percentile
In the Linux kernel, the following vulnerability has been resolved:
ACPICA: ACPICA: check null return of ACPI_ALLOCATE_ZEROED in acpi_db_display_objects
ACPICA commit 0d5f467d6a0ba852ea3aad68663cbcbd43300fd4
ACPI_ALLOCATE_ZEROED may fails, object_info might be null and will cause
null pointer dereference later.
Affected
21 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 6.1.37-1 (bookworm) | linux 6.1.37-1 (bookworm) |
| linux | linux | — | — |
| linux | linux | >= 9957510255724c1c746c9a6264c849e9fdd4cd24 < c9fcb2cfcbd4d7018d9f659f5b670f5b727d1968 | c9fcb2cfcbd4d7018d9f659f5b670f5b727d1968 |
| linux | linux | >= 9957510255724c1c746c9a6264c849e9fdd4cd24 < 35d67ffad6f5d78dbd800d354f5334c7b71a19e0 | 35d67ffad6f5d78dbd800d354f5334c7b71a19e0 |
| linux | linux | >= 9957510255724c1c746c9a6264c849e9fdd4cd24 < c409eb45f5ddae2e3b3faa76cefc87f3cd0d0e88 | c409eb45f5ddae2e3b3faa76cefc87f3cd0d0e88 |
| linux | linux | >= 9957510255724c1c746c9a6264c849e9fdd4cd24 < 978e0d05547ae707d51a942fc7e85a34e181ee6f | 978e0d05547ae707d51a942fc7e85a34e181ee6f |
| linux | linux | >= 9957510255724c1c746c9a6264c849e9fdd4cd24 < d997c920a5305b37f0b8a40501b5aca10d099ecd | d997c920a5305b37f0b8a40501b5aca10d099ecd |
| linux | linux | >= 9957510255724c1c746c9a6264c849e9fdd4cd24 < fee6133490091492dc66bcf71479bd53bd17a7d2 | fee6133490091492dc66bcf71479bd53bd17a7d2 |
| linux | linux | >= 9957510255724c1c746c9a6264c849e9fdd4cd24 < ed2e1e85644ca3d351324e9927a538c8af4df654 | ed2e1e85644ca3d351324e9927a538c8af4df654 |
| linux | linux | >= 9957510255724c1c746c9a6264c849e9fdd4cd24 < ae5a0eccc85fc960834dd66e3befc2728284b86c | ae5a0eccc85fc960834dd66e3befc2728284b86c |
| linux | linux_kernel | >= 0 < 5.10.191-1 | 5.10.191-1 |
| linux | linux_kernel | >= 0 < 6.1.37-1 | 6.1.37-1 |
| linux | linux_kernel | >= 0 < 6.3.7-1 | 6.3.7-1 |
| linux | linux_kernel | >= 0 < 6.3.7-1 | 6.3.7-1 |
| linux | linux_kernel | >= 4.15.0 < 4.19.284 | 4.19.284 |
| linux | linux_kernel | >= 4.20.0 < 5.4.244 | 5.4.244 |
| linux | linux_kernel | >= 4.4.0 < 4.14.316 | 4.14.316 |
| linux | linux_kernel | >= 5.11.0 < 5.15.113 | 5.15.113 |
| linux | linux_kernel | >= 5.16.0 < 6.1.30 | 6.1.30 |
| linux | linux_kernel | >= 5.5.0 < 5.10.181 | 5.10.181 |
| linux | linux_kernel | >= 6.2.0 < 6.3.4 | 6.3.4 |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
ACPICA: ACPICA: check null return of ACPI_ALLOCATE_ZEROED in acpi_db_display_objects
osv·2025-12-24
CVE-2023-54010 ACPICA: ACPICA: check null return of ACPI_ALLOCATE_ZEROED in acpi_db_display_objects
ACPICA: ACPICA: check null return of ACPI_ALLOCATE_ZEROED in acpi_db_display_objects
In the Linux kernel, the following vulnerability has been resolved:
ACPICA: ACPICA: check null return of ACPI_ALLOCATE_ZEROED in acpi_db_display_objects
ACPICA commit 0d5f467d6a0ba852ea3aad68663cbcbd43300fd4
ACPI_ALLOCATE_ZEROED may fails, object_info might be null and will cause
null pointer dereference later.
GHSA
GHSA-g22m-88hh-cvxw: In the Linux kernel, the following vulnerability has been resolved:
ACPICA: ACPICA: check null return of ACPI_ALLOCATE_ZEROED in acpi_db_display_obje
ghsa_unreviewed·2025-12-24
CVE-2023-54010 GHSA-g22m-88hh-cvxw: In the Linux kernel, the following vulnerability has been resolved:
ACPICA: ACPICA: check null return of ACPI_ALLOCATE_ZEROED in acpi_db_display_obje
In the Linux kernel, the following vulnerability has been resolved:
ACPICA: ACPICA: check null return of ACPI_ALLOCATE_ZEROED in acpi_db_display_objects
ACPICA commit 0d5f467d6a0ba852ea3aad68663cbcbd43300fd4
ACPI_ALLOCATE_ZEROED may fails, object_info might be null and will cause
null pointer dereference later.
OSV
CVE-2023-54010: In the Linux kernel, the following vulnerability has been resolved: ACPICA: ACPICA: check null return of ACPI_ALLOCATE_ZEROED in acpi_db_display_objec
osv·2025-12-24
CVE-2023-54010 CVE-2023-54010: In the Linux kernel, the following vulnerability has been resolved: ACPICA: ACPICA: check null return of ACPI_ALLOCATE_ZEROED in acpi_db_display_objec
In the Linux kernel, the following vulnerability has been resolved: ACPICA: ACPICA: check null return of ACPI_ALLOCATE_ZEROED in acpi_db_display_objects ACPICA commit 0d5f467d6a0ba852ea3aad68663cbcbd43300fd4 ACPI_ALLOCATE_ZEROED may fails, object_info might be null and will cause null pointer dereference later.
Red Hat
kernel: Linux kernel: Denial of Service via null pointer dereference in ACPI
vendor_redhat·2025-12-24·CVSS 5.5
CVE-2023-54010 [LOW] CWE-476 kernel: Linux kernel: Denial of Service via null pointer dereference in ACPI
kernel: Linux kernel: Denial of Service via null pointer dereference in ACPI
In the Linux kernel, the following vulnerability has been resolved:
ACPICA: ACPICA: check null return of ACPI_ALLOCATE_ZEROED in acpi_db_display_objects
ACPICA commit 0d5f467d6a0ba852ea3aad68663cbcbd43300fd4
ACPI_ALLOCATE_ZEROED may fails, object_info might be null and will cause
null pointer dereference later.
A flaw was found in the Linux kernel's Advanced Configuration and Power Interface (ACPI) component. This vulnerability occurs when a memory allocation function fails, leading to a null pointer dereference. A local attacker with low privileges could exploit this to cause the system to crash, resulting in a Denial of Service (DoS).
Package: kernel (Red Hat Enterprise Linux 10) - Not affected
Package: kern
Debian
CVE-2023-54010: linux - In the Linux kernel, the following vulnerability has been resolved: ACPICA: ACP...
vendor_debian·2023
CVE-2023-54010 CVE-2023-54010: linux - In the Linux kernel, the following vulnerability has been resolved: ACPICA: ACP...
In the Linux kernel, the following vulnerability has been resolved: ACPICA: ACPICA: check null return of ACPI_ALLOCATE_ZEROED in acpi_db_display_objects ACPICA commit 0d5f467d6a0ba852ea3aad68663cbcbd43300fd4 ACPI_ALLOCATE_ZEROED may fails, object_info might be null and will cause null pointer dereference later.
Scope: local
bookworm: resolved (fixed in 6.1.37-1)
bullseye: resolved (fixed in 5.10.191-1)
forky: resolved (fixed in 6.3.7-1)
sid: resolved (fixed in 6.3.7-1)
trixie: resolved (fixed in 6.3.7-1)
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2023-54010 kernel: Linux kernel: Denial of Service via null pointer dereference in ACPI
bugzilla·2025-12-24
CVE-2023-54010 [LOW] CVE-2023-54010 kernel: Linux kernel: Denial of Service via null pointer dereference in ACPI
CVE-2023-54010 kernel: Linux kernel: Denial of Service via null pointer dereference in ACPI
In the Linux kernel, the following vulnerability has been resolved:
ACPICA: ACPICA: check null return of ACPI_ALLOCATE_ZEROED in acpi_db_display_objects
ACPICA commit 0d5f467d6a0ba852ea3aad68663cbcbd43300fd4
ACPI_ALLOCATE_ZEROED may fails, object_info might be null and will cause
null pointer dereference later.
Discussion:
Upstream advisory:
https://lore.kernel.org/linux-cve-announce/2025122430-CVE-2023-54010-9ff1@gregkh/T
Wiz
CVE-2023-54010 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz
CVE-2023-54010 CVE-2023-54010 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2023-54010 :
Linux Kernel vulnerability analysis and mitigation
In the Linux kernel, the following vulnerability has been resolved:
ACPICA: ACPICA: check null return of ACPI_ALLOCATE_ZEROED in acpi_db_display_objects
ACPICA commit 0d5f467d6a0ba852ea3aad68663cbcbd43300fd4
ACPI_ALLOCATE_ZEROED may fails, object_info might be null and will cause
null pointer dereference later.
Source : NVD
Published December 24, 2025
CNA Score N/A
Affected Technologies
Linux Kernel
Linux Debian
Has Public Exploit No
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 10.8
Exploitation Probability (EPSS) N/A
Affected packages and libraries
kernel-rt-64k-core
kernel-rt-64k-modules
Sources
NVD
Debian 11, 12, 13, 14 Has F
https://git.kernel.org/stable/c/35d67ffad6f5d78dbd800d354f5334c7b71a19e0https://git.kernel.org/stable/c/978e0d05547ae707d51a942fc7e85a34e181ee6fhttps://git.kernel.org/stable/c/ae5a0eccc85fc960834dd66e3befc2728284b86chttps://git.kernel.org/stable/c/c409eb45f5ddae2e3b3faa76cefc87f3cd0d0e88https://git.kernel.org/stable/c/c9fcb2cfcbd4d7018d9f659f5b670f5b727d1968https://git.kernel.org/stable/c/d997c920a5305b37f0b8a40501b5aca10d099ecdhttps://git.kernel.org/stable/c/ed2e1e85644ca3d351324e9927a538c8af4df654https://git.kernel.org/stable/c/fee6133490091492dc66bcf71479bd53bd17a7d2
2025-12-24
Published