CVE-2023-52815

CVSS 3.1 Score 5.5 of 10 (medium)

Details

Published May 21, 2024
Updated: May 24, 2024
CWE ID 476

Summary

CVE-2023-52815 is a newly identified vulnerability in the Linux kernel affecting the amdgpu driver. This issue involves a null pointer dereference in the function amdgpu_vkms_conn_get_models(). Specifically, the return value of drm_cvt_mode() is assigned to the variable mode without proper validation, leading to a potential null pointer dereference if drm_cvt_mode() fails. To mitigate this vulnerability, a check has been implemented to avoid null pointer dereferences in this scenario.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share