CVE-2023-54085NULL Pointer Dereference in Linux

Severity
5.5MEDIUM
No vector
EPSS
0.0%
top 92.35%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 24

Description

In the Linux kernel, the following vulnerability has been resolved: mptcp: fix NULL pointer dereference on fastopen early fallback In case of early fallback to TCP, subflow_syn_recv_sock() deletes the subflow context before returning the newly allocated sock to the caller. The fastopen path does not cope with the above unconditionally dereferencing the subflow context.

Affected Packages3 packages

Linuxlinux/linux_kernel6.2.06.2.12
CVEListV5linux/linux36b122baf6a8bd46b4a591f12f4ed17b2225740895135835519b0ab931c39908b2c99e9fb3c9068b+2
debiandebian/linux

🔴Vulnerability Details

3
OSV
mptcp: fix NULL pointer dereference on fastopen early fallback2025-12-24
GHSA
GHSA-459f-v5p8-p6w3: In the Linux kernel, the following vulnerability has been resolved: mptcp: fix NULL pointer dereference on fastopen early fallback In case of early2025-12-24
OSV
CVE-2023-54085: In the Linux kernel, the following vulnerability has been resolved: mptcp: fix NULL pointer dereference on fastopen early fallback In case of early fa2025-12-24

📋Vendor Advisories

2
Red Hat
kernel: Linux kernel: Denial of Service due to NULL pointer dereference in mptcp fastopen2025-12-24
Debian
CVE-2023-54085: linux - In the Linux kernel, the following vulnerability has been resolved: mptcp: fix ...2023

🕵️Threat Intelligence

1
Wiz
CVE-2023-54085 Impact, Exploitability, and Mitigation Steps | Wiz