Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1020 CNY

100%

CVE-2023-52918— media: pci: cx23885: check cx23885_vdev_init() return

EPSS 0.01% · P2

Affected Version Matrix 16

VendorProductVersion RangeStatus
LinuxLinuxe47f30b140333525ea682ec672641b470da1e599< 8e31b096e2e1949bc8f0be019c9ae70d414404c6affected
e47f30b140333525ea682ec672641b470da1e599< 199a42fc4c45e8b7f19efeb15dbc36889a599ac2affected
e47f30b140333525ea682ec672641b470da1e599< e7385510e2550a9f8b6f3d5f33c5b894ab9ba976affected
e47f30b140333525ea682ec672641b470da1e599< a5f1d30c51c485cec7a7de60205667c3ff86c303affected
e47f30b140333525ea682ec672641b470da1e599< 06ee04a907d64ee3910fecedd05d7f1be4b1b70eaffected
e47f30b140333525ea682ec672641b470da1e599< b1397fb4a779fca560c43d2acf6702d41b4a495baffected
e47f30b140333525ea682ec672641b470da1e599< 15126b916e39b0cb67026b0af3c014bfeb1f76b3affected
2.6.25affected
… +8 more rows
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2023-52918

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
media: pci: cx23885: check cx23885_vdev_init() return
Source: NVD (National Vulnerability Database)
Vulnerability Description
In the Linux kernel, the following vulnerability has been resolved: media: pci: cx23885: check cx23885_vdev_init() return cx23885_vdev_init() can return a NULL pointer, but that pointer is used in the next line without a check. Add a NULL pointer check and go to the error unwind if it is NULL.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Linux kernel 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于media: pci: cx23885驱动程序中的cx23885_vdev_init函数可能返回NULL指针,但该指针在下一行代码中被使用时没有进行检查。这可能导致未定义行为,包括可能的系统崩溃或内核崩溃。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
LinuxLinux e47f30b140333525ea682ec672641b470da1e599 ~ 8e31b096e2e1949bc8f0be019c9ae70d414404c6 -
LinuxLinux 2.6.25 -

II. Public POCs for CVE-2023-52918

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2023-52918

登录查看更多情报信息。

IV. Related Vulnerabilities

V. Comments for CVE-2023-52918

No comments yet


Leave a comment