CVE-2023-53316

high

Description

In the Linux kernel, the following vulnerability has been resolved: drm/msm/dp: Free resources after unregistering them The DP component's unbind operation walks through the submodules to unregister and clean things up. But if the unbind happens because the DP controller itself is being removed, all the memory for those submodules has just been freed. Change the order of these operations to avoid the many use-after-free that otherwise happens in this code path. Patchwork: https://patchwork.freedesktop.org/patch/542166/

References

https://git.kernel.org/stable/c/fa0048a4b1fa7a50c8b0e514f5b428abdf69a6f8

https://git.kernel.org/stable/c/ca47d0dc00968358c136a1847cfed550cedfd1b5

https://git.kernel.org/stable/c/c67a55f7cc8d767d624235bf1bcd0947e56abe0f

https://git.kernel.org/stable/c/5c3278db06e332fdc14f3f297499fb88ded264d2

https://git.kernel.org/stable/c/4e9f1a2367aea7d61f6781213e25313cd983b0d7

https://git.kernel.org/stable/c/3c3f3d35f5e05c468b048eb42a4f8c62c6655692

Details

Source: Mitre, NVD

Published: 2025-09-16

Updated: 2025-09-17

Risk Information

CVSS v2

Base Score: 4.6

Vector: CVSS2#AV:L/AC:L/Au:N/C:P/I:P/A:P

Severity: Medium

CVSS v3

Base Score: 7.8

Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Severity: High

EPSS

EPSS: 0.00024