cbcvebase.
CVE-2023-54122
published 2025-12-24

CVE-2023-54122: In the Linux kernel, the following vulnerability has been resolved: drm/msm/dpu: Add check for cstate As kzalloc may fail and return NULL pointer, it should be…

PriorityP419
EPSS
0.19%
9.1th percentile
In the Linux kernel, the following vulnerability has been resolved: drm/msm/dpu: Add check for cstate As kzalloc may fail and return NULL pointer, it should be better to check cstate in order to avoid the NULL pointer dereference in __drm_atomic_helper_crtc_reset. Patchwork: https://patchwork.freedesktop.org/patch/514163/

Affected

17 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.20-1 (bookworm)linux 6.1.20-1 (bookworm)
linuxlinux
linuxlinux>= 1cff7440a86e04a613665803b42034c467f035fa < a6afb8293ec0932f4ed0b7aecfc0ccc00f44dc2ba6afb8293ec0932f4ed0b7aecfc0ccc00f44dc2b
linuxlinux>= 1cff7440a86e04a613665803b42034c467f035fa < 31f2f8de0ea7387cde18a24f94ba5e0b886b984231f2f8de0ea7387cde18a24f94ba5e0b886b9842
linuxlinux>= 1cff7440a86e04a613665803b42034c467f035fa < d4ba50614cb3f0686bbdb505af685d78e75861dcd4ba50614cb3f0686bbdb505af685d78e75861dc
linuxlinux>= 1cff7440a86e04a613665803b42034c467f035fa < 42442d42c57b9fbc35cb5ef72c7e5347c5f7d08242442d42c57b9fbc35cb5ef72c7e5347c5f7d082
linuxlinux>= 1cff7440a86e04a613665803b42034c467f035fa < a52e5a002d18bffabff66f6f59a74f8e9aac5afea52e5a002d18bffabff66f6f59a74f8e9aac5afe
linuxlinux>= 1cff7440a86e04a613665803b42034c467f035fa < c96988b7d99327bb08bd9efd29a203b22cd88acec96988b7d99327bb08bd9efd29a203b22cd88ace
linuxlinux_kernel>= 0 < 5.10.178-15.10.178-1
linuxlinux_kernel>= 0 < 6.1.20-16.1.20-1
linuxlinux_kernel>= 0 < 6.1.20-16.1.20-1
linuxlinux_kernel>= 0 < 6.1.20-16.1.20-1
linuxlinux_kernel>= 5.11.0 < 5.15.995.15.99
linuxlinux_kernel>= 5.16.0 < 6.1.166.1.16
linuxlinux_kernel>= 5.3.0 < 5.4.2355.4.235
linuxlinux_kernel>= 5.5.0 < 5.10.1735.10.173
linuxlinux_kernel>= 6.2.0 < 6.2.36.2.3
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.