CVE-2023-54298

UnknownEPSS 0.18%

Last modified

CVE-2023-54298 is a vulnerability of currently unknown severity. In the Linux kernel, the following vulnerability has been resolved: thermal: intel: quark_dts: fix error pointer dereference If alloc_soc_dts() fails, then we can just return. Trying to free "soc_dts" will lead to an Oops.. EPSS estimates a 0.18% chance of exploitation in the next 30 days.

Description

In the Linux kernel, the following vulnerability has been resolved: thermal: intel: quark_dts: fix error pointer dereference If alloc_soc_dts() fails, then we can just return. Trying to free "soc_dts" will lead to an Oops.

Metrics

EPSS Probability
0.18%

7.4th percentile

Probability of exploitation in the next 30 days. Learn more

Affected Software

Source: CNA advisory (CVE.org). NVD analysis pending.

VendorProductVersions
LinuxLinux>= 8c1876939663191b5044807230fa295f35462215, < 0b366c6a42e2e2bc67af8d1130b68f3bfa31c80e; >= 8c1876939663191b5044807230fa295f35462215, < d0178f2788fb1183a5cc350213efdc94010b9147; >= 8c1876939663191b5044807230fa295f35462215, < e23f1d9e6e03d04da2f18e78ab5d4255ffeb1333; >= 8c1876939663191b5044807230fa295f35462215, < f73134231fa23e0856c15010db5f5c03693c1e92; >= 8c1876939663191b5044807230fa295f35462215, < 5eaf55b38691291d49417c22e726591078ca1893; >= 8c1876939663191b5044807230fa295f35462215, < 69e49f1b53605706bc2203455021539aba2ebe21; >= 8c1876939663191b5044807230fa295f35462215, < 24c221b11c2894e1a5f07b93362d9bc91c6d8be7; >= 8c1876939663191b5044807230fa295f35462215, < f1b930e740811d416de4d2074da48b6633a672c8
LinuxLinux4.2

References

Timeline

Published
Last Modified
Status
Deferred

Frequently Asked Questions

What is CVE-2023-54298?
In the Linux kernel, the following vulnerability has been resolved: thermal: intel: quark_dts: fix error pointer dereference If alloc_soc_dts() fails, then we can just return. Trying to free "soc_dts" will lead to an Oops.
How severe is CVE-2023-54298?
Severity scoring for CVE-2023-54298 is pending analysis. The EPSS model estimates a 0.18% probability of exploitation in the next 30 days.
How do I fix CVE-2023-54298?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

How Strix Helps

Related CVEs from 2023

Are you affected by CVE-2023-54298?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST