CVE-2023-54178
published 2025-12-30CVE-2023-54178: In the Linux kernel, the following vulnerability has been resolved: of: unittest: fix null pointer dereferencing in of_unittest_find_node_by_name() when…
PriorityP420
EPSS
0.20%
10.4th percentile
In the Linux kernel, the following vulnerability has been resolved:
of: unittest: fix null pointer dereferencing in of_unittest_find_node_by_name()
when kmalloc() fail to allocate memory in kasprintf(), name
or full_name will be NULL, strcmp() will cause
null pointer dereference.
Affected
23 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 6.1.55-1 (bookworm) | linux 6.1.55-1 (bookworm) |
| linux | linux | — | — |
| linux | linux | >= 0d638a07d3a1e98a7598eb2812a6236324e4c55f < c364fa869b33ca42a263bf91c22fce7e6c61d479 | c364fa869b33ca42a263bf91c22fce7e6c61d479 |
| linux | linux | >= 0d638a07d3a1e98a7598eb2812a6236324e4c55f < 0b7d715511915a1b39f5fdcbe57a7922dfd66513 | 0b7d715511915a1b39f5fdcbe57a7922dfd66513 |
| linux | linux | >= 0d638a07d3a1e98a7598eb2812a6236324e4c55f < dadf0d0dfcc81cdcb27ba5426676d13a9e4fb925 | dadf0d0dfcc81cdcb27ba5426676d13a9e4fb925 |
| linux | linux | >= 0d638a07d3a1e98a7598eb2812a6236324e4c55f < f41c65f8d05be734898cbe72af59a401b97d298a | f41c65f8d05be734898cbe72af59a401b97d298a |
| linux | linux | >= 0d638a07d3a1e98a7598eb2812a6236324e4c55f < ea5bc6f5aa099e3e84d037282836234ad77cba88 | ea5bc6f5aa099e3e84d037282836234ad77cba88 |
| linux | linux | >= 0d638a07d3a1e98a7598eb2812a6236324e4c55f < 43cc228099c514467b8074d7ede6673cef9f33b9 | 43cc228099c514467b8074d7ede6673cef9f33b9 |
| linux | linux | >= 0d638a07d3a1e98a7598eb2812a6236324e4c55f < c74ae8124f9687062dd99858f34c9d027ddd73da | c74ae8124f9687062dd99858f34c9d027ddd73da |
| linux | linux | >= 0d638a07d3a1e98a7598eb2812a6236324e4c55f < 2dd8ee9de71ad8447f8459fb01dade7f6c7132da | 2dd8ee9de71ad8447f8459fb01dade7f6c7132da |
| linux | linux | >= 0d638a07d3a1e98a7598eb2812a6236324e4c55f < d6ce4f0ea19c32f10867ed93d8386924326ab474 | d6ce4f0ea19c32f10867ed93d8386924326ab474 |
| linux | linux_kernel | >= 0 < 5.10.197-1 | 5.10.197-1 |
| linux | linux_kernel | >= 0 < 6.1.55-1 | 6.1.55-1 |
| linux | linux_kernel | >= 0 < 6.5.3-1 | 6.5.3-1 |
| linux | linux_kernel | >= 0 < 6.5.3-1 | 6.5.3-1 |
| linux | linux_kernel | >= 4.14.0 < 4.14.326 | 4.14.326 |
| linux | linux_kernel | >= 4.15.0 < 4.19.295 | 4.19.295 |
| linux | linux_kernel | >= 4.20.0 < 5.4.257 | 5.4.257 |
| linux | linux_kernel | >= 5.11.0 < 5.15.132 | 5.15.132 |
| linux | linux_kernel | >= 5.16.0 < 6.1.53 | 6.1.53 |
| linux | linux_kernel | >= 5.5.0 < 5.10.195 | 5.10.195 |
| linux | linux_kernel | >= 6.2.0 < 6.4.16 | 6.4.16 |
| linux | linux_kernel | >= 6.5.0 < 6.5.3 | 6.5.3 |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
kernel: of: unittest: fix null pointer dereferencing in of_unittest_find_node_by_name()
vendor_redhat·2025-12-30
CVE-2023-54178 kernel: of: unittest: fix null pointer dereferencing in of_unittest_find_node_by_name()
kernel: of: unittest: fix null pointer dereferencing in of_unittest_find_node_by_name()
In the Linux kernel, the following vulnerability has been resolved:
of: unittest: fix null pointer dereferencing in of_unittest_find_node_by_name()
when kmalloc() fail to allocate memory in kasprintf(), name
or full_name will be NULL, strcmp() will cause
null pointer dereference.
Package: kernel (Red Hat Enterprise Linux 10) - Not affected
Package: kernel (Red Hat Enterprise Linux 6) - Not affected
Package: kernel (Red Hat Enterprise Linux 7) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 7) - Not affected
Package: kernel (Red Hat Enterprise Linux 8) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 8) - Not affected
Package: kernel (Red Hat Enterprise Linux 9) - Not affec
Debian
CVE-2023-54178: linux - In the Linux kernel, the following vulnerability has been resolved: of: unittes...
vendor_debian·2023
CVE-2023-54178 CVE-2023-54178: linux - In the Linux kernel, the following vulnerability has been resolved: of: unittes...
In the Linux kernel, the following vulnerability has been resolved: of: unittest: fix null pointer dereferencing in of_unittest_find_node_by_name() when kmalloc() fail to allocate memory in kasprintf(), name or full_name will be NULL, strcmp() will cause null pointer dereference.
Scope: local
bookworm: resolved (fixed in 6.1.55-1)
bullseye: resolved (fixed in 5.10.197-1)
forky: resolved (fixed in 6.5.3-1)
sid: resolved (fixed in 6.5.3-1)
trixie: resolved (fixed in 6.5.3-1)
OSV
of: unittest: fix null pointer dereferencing in of_unittest_find_node_by_name()
osv·2025-12-30
CVE-2023-54178 of: unittest: fix null pointer dereferencing in of_unittest_find_node_by_name()
of: unittest: fix null pointer dereferencing in of_unittest_find_node_by_name()
In the Linux kernel, the following vulnerability has been resolved:
of: unittest: fix null pointer dereferencing in of_unittest_find_node_by_name()
when kmalloc() fail to allocate memory in kasprintf(), name
or full_name will be NULL, strcmp() will cause
null pointer dereference.
OSV
CVE-2023-54178: In the Linux kernel, the following vulnerability has been resolved: of: unittest: fix null pointer dereferencing in of_unittest_find_node_by_name() wh
osv·2025-12-30
CVE-2023-54178 CVE-2023-54178: In the Linux kernel, the following vulnerability has been resolved: of: unittest: fix null pointer dereferencing in of_unittest_find_node_by_name() wh
In the Linux kernel, the following vulnerability has been resolved: of: unittest: fix null pointer dereferencing in of_unittest_find_node_by_name() when kmalloc() fail to allocate memory in kasprintf(), name or full_name will be NULL, strcmp() will cause null pointer dereference.
GHSA
GHSA-wxwm-5fjr-9g52: In the Linux kernel, the following vulnerability has been resolved:
of: unittest: fix null pointer dereferencing in of_unittest_find_node_by_name()
ghsa_unreviewed·2025-12-30
CVE-2023-54178 GHSA-wxwm-5fjr-9g52: In the Linux kernel, the following vulnerability has been resolved:
of: unittest: fix null pointer dereferencing in of_unittest_find_node_by_name()
In the Linux kernel, the following vulnerability has been resolved:
of: unittest: fix null pointer dereferencing in of_unittest_find_node_by_name()
when kmalloc() fail to allocate memory in kasprintf(), name
or full_name will be NULL, strcmp() will cause
null pointer dereference.
No detection rules found.
No public exploits indexed.
Wiz
CVE-2023-54178 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz
CVE-2023-54178 CVE-2023-54178 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2023-54178 :
Linux Kernel vulnerability analysis and mitigation
In the Linux kernel, the following vulnerability has been resolved:
of: unittest: fix null pointer dereferencing in of_unittest_find_node_by_name()
when kmalloc() fail to allocate memory in kasprintf(), name
or full_name will be NULL, strcmp() will cause
null pointer dereference.
Source : NVD
Published December 30, 2025
CNA Score N/A
Affected Technologies
Linux Kernel
Linux Debian
Has Public Exploit No
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 20.3
Exploitation Probability (EPSS) 0.1
Affected packages and libraries
dtb-xilinx
kernel-64kb-devel
Sources
NVD
Debian 11, 12, 13, 14 Has Fix Added at: Dec 31, 2025
Echo Has Fix Added
Bugzilla
CVE-2023-54178 kernel: of: unittest: fix null pointer dereferencing in of_unittest_find_node_by_name()
bugzilla·2025-12-30
CVE-2023-54178 CVE-2023-54178 kernel: of: unittest: fix null pointer dereferencing in of_unittest_find_node_by_name()
CVE-2023-54178 kernel: of: unittest: fix null pointer dereferencing in of_unittest_find_node_by_name()
In the Linux kernel, the following vulnerability has been resolved:
of: unittest: fix null pointer dereferencing in of_unittest_find_node_by_name()
when kmalloc() fail to allocate memory in kasprintf(), name
or full_name will be NULL, strcmp() will cause
null pointer dereference.
Discussion:
Upstream advisory:
https://lore.kernel.org/linux-cve-announce/2025123023-CVE-2023-54178-bcb3@gregkh/T
https://git.kernel.org/stable/c/0b7d715511915a1b39f5fdcbe57a7922dfd66513https://git.kernel.org/stable/c/2dd8ee9de71ad8447f8459fb01dade7f6c7132dahttps://git.kernel.org/stable/c/43cc228099c514467b8074d7ede6673cef9f33b9https://git.kernel.org/stable/c/c364fa869b33ca42a263bf91c22fce7e6c61d479https://git.kernel.org/stable/c/c74ae8124f9687062dd99858f34c9d027ddd73dahttps://git.kernel.org/stable/c/d6ce4f0ea19c32f10867ed93d8386924326ab474https://git.kernel.org/stable/c/dadf0d0dfcc81cdcb27ba5426676d13a9e4fb925https://git.kernel.org/stable/c/ea5bc6f5aa099e3e84d037282836234ad77cba88https://git.kernel.org/stable/c/f41c65f8d05be734898cbe72af59a401b97d298a
2025-12-30
Published