CVE-2023-52850

MEDIUM

Linux Kernel 5.18-6.1.63 6.5.12-6.5.* 6.6.2-6.6.* - NULL Pointer Dereference in Hantro VPU Reset Operation

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: media: hantro: Check whether reset op is defined before use The i.MX8MM/N/P does not define the .reset op since reset of the VPU is done by genpd. Check whether the .reset op is defined before calling it to avoid NULL pointer dereference. Note that the Fixes tag is set to the commit which removed the reset op from i.MX8M Hantro G2 implementation, this is because before this commit all the implementations did define the .reset op.

Scores

CVSS v3 5.5
EPSS 0.0024
EPSS Percentile 14.4%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-476
Status published
Products (11)
Linux/Linux < 5.18
Linux/Linux 5.18
Linux/Linux 6.1.63 - 6.1.*
Linux/Linux 6.5.12 - 6.5.*
Linux/Linux 6.6.2 - 6.6.*
Linux/Linux 6.7
Linux/Linux 6971efb70ac3e43d19bf33ef5f83bea0271831ee - 24c06295f28335ced3aad53dd4b0a0bae7b9b100
Linux/Linux 6971efb70ac3e43d19bf33ef5f83bea0271831ee - 64f55cebb4339ae771e9e7f3f42bee2489e2fa00
Linux/Linux 6971efb70ac3e43d19bf33ef5f83bea0271831ee - 66b4c5f980d741f3a47e4b65eeaf2797f2d59294
Linux/Linux 6971efb70ac3e43d19bf33ef5f83bea0271831ee - 88d4b23a629ebd34f682f770cb6c2116c851f7b8
... and 1 more
Published May 21, 2024
Tracked Since Feb 18, 2026