CVE-2023-54098NULL Pointer Dereference in Linux

Severity
5.5MEDIUM
No vector
EPSS
0.0%
top 92.57%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 24

Description

In the Linux kernel, the following vulnerability has been resolved: drm/i915/gvt: fix gvt debugfs destroy When gvt debug fs is destroyed, need to have a sane check if drm minor's debugfs root is still available or not, otherwise in case like device remove through unbinding, drm minor's debugfs directory has already been removed, then intel_gvt_debugfs_clean() would act upon dangling pointer like below oops. i915 0000:00:02.0: Direct firmware load for i915/gvt/vid_0x8086_did_0x1926_rid_0x0a.go

Affected Packages4 packages

Linuxlinux/linux_kernel4.16.05.10.163+3
Debianlinux/linux_kernel< 5.10.178-1+3
CVEListV5linux/linuxbc7b0be316aebac42eb9e8e54c984609555944dabb7c7b2c89d2feb347b6f9bffc1c75987adb1048+5
debiandebian/linux< linux 6.1.7-1 (bookworm)

🔴Vulnerability Details

3
OSV
CVE-2023-54098: In the Linux kernel, the following vulnerability has been resolved: drm/i915/gvt: fix gvt debugfs destroy When gvt debug fs is destroyed, need to have2025-12-24
OSV
drm/i915/gvt: fix gvt debugfs destroy2025-12-24
GHSA
GHSA-4cf5-x5mg-rrpq: In the Linux kernel, the following vulnerability has been resolved: drm/i915/gvt: fix gvt debugfs destroy When gvt debug fs is destroyed, need to ha2025-12-24

📋Vendor Advisories

2
Red Hat
kernel: Kernel: NULL pointer dereference in Intel GVT-g debugfs during device removal2025-12-24
Debian
CVE-2023-54098: linux - In the Linux kernel, the following vulnerability has been resolved: drm/i915/gv...2023

🕵️Threat Intelligence

1
Wiz
CVE-2023-54098 Impact, Exploitability, and Mitigation Steps | Wiz