CVE-2023-54287Access of Uninitialized Pointer in Linux

Severity
4.7MEDIUM
No vector
EPSS
0.0%
top 92.73%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 30

Description

In the Linux kernel, the following vulnerability has been resolved: tty: serial: imx: disable Ageing Timer interrupt request irq There maybe pending USR interrupt before requesting irq, however uart_add_one_port has not executed, so there will be kernel panic: [ 0.795668] Unable to handle kernel NULL pointer dereference at virtual addre ss 0000000000000080 [ 0.802701] Mem abort info: [ 0.805367] ESR = 0x0000000096000004 [ 0.808950] EC = 0x25: DABT (current EL), IL = 32 bits [ 0.814033] SET = 0

Affected Packages4 packages

Linuxlinux/linux_kernel4.3.05.15.99+2
Debianlinux/linux_kernel< 6.1.20-1+2
CVEListV5linux/linux8a61f0c70ae65c6b70d13228c3120c73d7425a603d41d9b256ae626c0dc434427c8e32450358d3b4+4
debiandebian/linux< linux 6.1.20-1 (bookworm)

🔴Vulnerability Details

3
GHSA
GHSA-88jr-vfwv-8mp6: In the Linux kernel, the following vulnerability has been resolved: tty: serial: imx: disable Ageing Timer interrupt request irq There maybe pending2025-12-30
OSV
CVE-2023-54287: In the Linux kernel, the following vulnerability has been resolved: tty: serial: imx: disable Ageing Timer interrupt request irq There maybe pending U2025-12-30
OSV
tty: serial: imx: disable Ageing Timer interrupt request irq2025-12-30

📋Vendor Advisories

2
Red Hat
kernel: tty: serial: imx: disable Ageing Timer interrupt request irq2025-12-30
Debian
CVE-2023-54287: linux - In the Linux kernel, the following vulnerability has been resolved: tty: serial...2023

🕵️Threat Intelligence

1
Wiz
CVE-2023-54287 Impact, Exploitability, and Mitigation Steps | Wiz