CVE-2023-53316

Severity CVSS v4.0:
Pending analysis
Type:
CWE-416 Use After Free
Publication date:
16/09/2025
Last modified:
14/01/2026

Description

In the Linux kernel, the following vulnerability has been resolved:<br /> <br /> drm/msm/dp: Free resources after unregistering them<br /> <br /> The DP component&amp;#39;s unbind operation walks through the submodules to<br /> unregister and clean things up. But if the unbind happens because the DP<br /> controller itself is being removed, all the memory for those submodules<br /> has just been freed.<br /> <br /> Change the order of these operations to avoid the many use-after-free<br /> that otherwise happens in this code path.<br /> <br /> Patchwork: https://patchwork.freedesktop.org/patch/542166/

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 5.10 (including) 5.10.188 (excluding)
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 5.11 (including) 5.15.121 (excluding)
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 5.16 (including) 6.1.39 (excluding)
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 6.2 (including) 6.3.13 (excluding)
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 6.4 (including) 6.4.4 (excluding)