CVE-2023-54147
Last modified
CVE-2023-54147 is a vulnerability of currently unknown severity. In the Linux kernel, the following vulnerability has been resolved: media: platform: mtk-mdp3: Add missing check and free for ida_alloc Add the check for the return value of the ida_alloc in order to avoid NULL pointer dereference. Moreover, free allocated "ctx->id" if mdp_m2m_open fails later in order to avoid memory leak.. EPSS estimates a 0.17% chance of exploitation in the next 30 days.
Description
In the Linux kernel, the following vulnerability has been resolved: media: platform: mtk-mdp3: Add missing check and free for ida_alloc Add the check for the return value of the ida_alloc in order to avoid NULL pointer dereference. Moreover, free allocated "ctx->id" if mdp_m2m_open fails later in order to avoid memory leak.
Metrics
Affected Software
Source: CNA advisory (CVE.org). NVD analysis pending.
| Vendor | Product | Versions |
|---|---|---|
| Linux | Linux | >= 61890ccaefaff89f5babd2c8412fd222c3f5fe38, < 51fc1880e47421ee7b192372e8e86b7bbba40776; >= 61890ccaefaff89f5babd2c8412fd222c3f5fe38, < 4c173a65a2b1cc0556c3f6f0bab82e4fdb449522; >= 61890ccaefaff89f5babd2c8412fd222c3f5fe38, < 22b72cad501fb75500cc60af4d92de3066fb6fc2; >= 61890ccaefaff89f5babd2c8412fd222c3f5fe38, < d00f592250782538cda87745607695b0fe27dcd4 |
| Linux | Linux | 6.1 |
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2023-54147?
How severe is CVE-2023-54147?
How do I fix CVE-2023-54147?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2023
- CVE-2023-54141In the Linux kernel, the following vulnerability has been re…
- CVE-2023-54142In the Linux kernel, the following vulnerability has been re…7.8
- CVE-2023-54143In the Linux kernel, the following vulnerability has been re…
- CVE-2023-54144In the Linux kernel, the following vulnerability has been re…
- CVE-2023-54145In the Linux kernel, the following vulnerability has been re…
- CVE-2023-54146In the Linux kernel, the following vulnerability has been re…
- CVE-2023-54148In the Linux kernel, the following vulnerability has been re…
- CVE-2023-54149In the Linux kernel, the following vulnerability has been re…7.5
- CVE-2023-5415The Funnelforms Free plugin for WordPress is vulnerable to u…4.3
- CVE-2023-54150In the Linux kernel, the following vulnerability has been re…
- CVE-2023-54151In the Linux kernel, the following vulnerability has been re…7.8
- CVE-2023-54152In the Linux kernel, the following vulnerability has been re…
Are you affected by CVE-2023-54147?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
