CVE-2023-53085

HIGH

Linux Kernel - Information Disclosure via Uninitialized EDID Transfer Buffer

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: drm/edid: fix info leak when failing to get panel id Make sure to clear the transfer buffer before fetching the EDID to avoid leaking slab data to the logs on errors that leave the buffer unchanged.

Scores

CVSS v3 7.1
EPSS 0.0016
EPSS Percentile 5.9%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H

Details

Status published
Products (9)
linux/Kernel 6.2.0 - 6.2.8linux
Linux/Linux < 6.2
Linux/Linux 6.2
Linux/Linux 6.2.8 - 6.2.*
Linux/Linux 6.3
Linux/Linux 69c7717c20cc87105b8b54ba43d12ca4e432a1a5 - 4d8457fe0eb9c80ff7795cf8a30962128b71d853
Linux/Linux 69c7717c20cc87105b8b54ba43d12ca4e432a1a5 - 598c42c78919117dc0d235ae22d17ad642377483
linux/linux_kernel 6.3 rc1 (2 CPE variants)
linux/linux_kernel 6.2 - 6.2.8
Published May 02, 2025
Tracked Since Feb 18, 2026