CVE-2023-6679NULL Pointer Dereference in Redhat Enterprise Linux

Severity
5.5MEDIUMNVD
EPSS
0.0%
top 98.02%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 11

Description

A null pointer dereference vulnerability was found in dpll_pin_parent_pin_set() in drivers/dpll/dpll_netlink.c in the Digital Phase Locked Loop (DPLL) subsystem in the Linux kernel. This issue could be exploited to trigger a denial of service.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:HExploitability: 1.8 | Impact: 3.6

Affected Packages0 packages

Also affects: Enterprise Linux 9.0, Fedora 38

Patches

🔴Vulnerability Details

3
CVEList
Kernel: null pointer dereference in dpll_pin_parent_pin_set() in drivers/dpll/dpll_netlink.c2023-12-11
OSV
CVE-2023-6679: A null pointer dereference vulnerability was found in dpll_pin_parent_pin_set() in drivers/dpll/dpll_netlink2023-12-11
GHSA
GHSA-9vh7-c87x-8q9v: A null pointer dereference vulnerability was found in dpll_pin_parent_pin_set() in drivers/dpll/dpll_netlink2023-12-11

📋Vendor Advisories

2
Red Hat
kernel: NULL pointer dereference in dpll_pin_parent_pin_set() in drivers/dpll/dpll_netlink.c2023-12-11
Debian
CVE-2023-6679: linux - A null pointer dereference vulnerability was found in dpll_pin_parent_pin_set() ...2023

💬Community

1
Bugzilla
CVE-2023-6679 kernel: NULL pointer dereference in dpll_pin_parent_pin_set() in drivers/dpll/dpll_netlink.c2023-12-11
CVE-2023-6679 — NULL Pointer Dereference in Redhat | cvebase