CVE-2023-52850
Severity CVSS v4.0:
Pending analysis
Type:
CWE-476
NULL Pointer Dereference
Publication date:
21/05/2024
Last modified:
30/12/2024
Description
In the Linux kernel, the following vulnerability has been resolved:<br />
<br />
media: hantro: Check whether reset op is defined before use<br />
<br />
The i.MX8MM/N/P does not define the .reset op since reset of the VPU is<br />
done by genpd. Check whether the .reset op is defined before calling it<br />
to avoid NULL pointer dereference.<br />
<br />
Note that the Fixes tag is set to the commit which removed the reset op<br />
from i.MX8M Hantro G2 implementation, this is because before this commit<br />
all the implementations did define the .reset op.
Impact
Base Score 3.x
5.50
Severity 3.x
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 5.18 (including) | 6.1.63 (excluding) |
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 6.2 (including) | 6.5.12 (excluding) |
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 6.6 (including) | 6.6.2 (excluding) |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- https://git.kernel.org/stable/c/24c06295f28335ced3aad53dd4b0a0bae7b9b100
- https://git.kernel.org/stable/c/64f55cebb4339ae771e9e7f3f42bee2489e2fa00
- https://git.kernel.org/stable/c/66b4c5f980d741f3a47e4b65eeaf2797f2d59294
- https://git.kernel.org/stable/c/88d4b23a629ebd34f682f770cb6c2116c851f7b8
- https://git.kernel.org/stable/c/24c06295f28335ced3aad53dd4b0a0bae7b9b100
- https://git.kernel.org/stable/c/64f55cebb4339ae771e9e7f3f42bee2489e2fa00
- https://git.kernel.org/stable/c/66b4c5f980d741f3a47e4b65eeaf2797f2d59294
- https://git.kernel.org/stable/c/88d4b23a629ebd34f682f770cb6c2116c851f7b8



