VulnerabilityAnalyzed
CVE-2023-52858
In the Linux kernel, the following vulnerability has been resolved: clk: mediatek: clk-mt7629: Add check for mtk_alloc_clk_data Add the check for the return value of mtk_alloc_clk_data() in order to avoid NULL pointer dereference.
MEDIUM 6.2EPSS 0.25%
Does this matter?
Lower severity and a low EPSS score (0.25%). Track it; it rarely justifies an emergency change on its own.
Description
In the Linux kernel, the following vulnerability has been resolved: clk: mediatek: clk-mt7629: Add check for mtk_alloc_clk_data Add the check for the return value of mtk_alloc_clk_data() in order to avoid NULL pointer dereference.
- CVSS 3.1
- 6.2 MEDIUMCVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
- EPSS
- 0.25% probability · 17th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-476
- Affected
- linux/linux kernel
- Source
- 416baaa9-dc9f-4396-8d5f-8c081fb06d67
References
- https://git.kernel.org/stable/c/1d89430fc3158f872d492f1b88d07262f48290c0Patch
- https://git.kernel.org/stable/c/2befa515c1bb6cdd33c262b909d93d1973a219aaPatch
- https://git.kernel.org/stable/c/4f861b63945e076f9f003a5fad958174096df1eePatch
- https://git.kernel.org/stable/c/5fbea47eebff5daeca7d918c99289bcd3ae4dc8dPatch
- https://git.kernel.org/stable/c/a836efc21ef04608333d6d05753e558ebd1f85d0Patch
- https://git.kernel.org/stable/c/e8ae4b49dd9cfde69d8de8c0c0cd7cf1b004482ePatch
- https://git.kernel.org/stable/c/e964d21dc034b650d719c4ea39564bec72b42f94Patch
- https://git.kernel.org/stable/c/1d89430fc3158f872d492f1b88d07262f48290c0Patch
- https://git.kernel.org/stable/c/2befa515c1bb6cdd33c262b909d93d1973a219aaPatch
- https://git.kernel.org/stable/c/4f861b63945e076f9f003a5fad958174096df1eePatch
- https://git.kernel.org/stable/c/5fbea47eebff5daeca7d918c99289bcd3ae4dc8dPatch
- https://git.kernel.org/stable/c/a836efc21ef04608333d6d05753e558ebd1f85d0Patch
- https://git.kernel.org/stable/c/e8ae4b49dd9cfde69d8de8c0c0cd7cf1b004482ePatch
- https://git.kernel.org/stable/c/e964d21dc034b650d719c4ea39564bec72b42f94Patch
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.