Home

Description

In the Linux kernel, the following vulnerability has been resolved: drm/msm/dpu: Disallow unallocated resources to be returned In the event that the topology requests resources that have not been created by the system (because they are typically not represented in dpu_mdss_cfg ^1), the resource(s) in global_state (in this case DSC blocks, until their allocation/assignment is being sanity-checked in "drm/msm/dpu: Reject topologies for which no DSC blocks are available") remain NULL but will still be returned out of dpu_rm_get_assigned_resources, where the caller expects to get an array containing num_blks valid pointers (but instead gets these NULLs). To prevent this from happening, where null-pointer dereferences typically result in a hard-to-debug platform lockup, num_blks shouldn't increase past NULL blocks and will print an error and break instead. After all, max_blks represents the static size of the maximum number of blocks whereas the actual amount varies per platform. ^1: which can happen after a git rebase ended up moving additions to _dpu_cfg to a different struct which has the same patch context. Patchwork: https://patchwork.freedesktop.org/patch/517636/

PUBLISHED Reserved 2025-12-24 | Published 2025-12-24 | Updated 2025-12-24 | Assigner Linux

Product status

Default status
unaffected

bb00a452d6f77391441ef7df48f7115dd459cd2f (git) before 8dbd54d679e3ab37be43bc1ed9f463dbf83a2259
affected

bb00a452d6f77391441ef7df48f7115dd459cd2f (git) before bf661c5e3bc48973acb363c76e3db965d9ed26d0
affected

bb00a452d6f77391441ef7df48f7115dd459cd2f (git) before 9e1e236acdc42b5c43ec8d7f03a39537e70cc309
affected

bb00a452d6f77391441ef7df48f7115dd459cd2f (git) before 9fe3644c720ac87d150f0bba5a4ae86cae55afaf
affected

bb00a452d6f77391441ef7df48f7115dd459cd2f (git) before abc40122d9a69f56c04efb5a7485795f5ac799d1
affected

Default status
affected

5.7
affected

Any version before 5.7
unaffected

5.10.173 (semver)
unaffected

5.15.99 (semver)
unaffected

6.1.16 (semver)
unaffected

6.2.3 (semver)
unaffected

6.3 (original_commit_for_fix)
unaffected

References

git.kernel.org/...c/8dbd54d679e3ab37be43bc1ed9f463dbf83a2259

git.kernel.org/...c/bf661c5e3bc48973acb363c76e3db965d9ed26d0

git.kernel.org/...c/9e1e236acdc42b5c43ec8d7f03a39537e70cc309

git.kernel.org/...c/9fe3644c720ac87d150f0bba5a4ae86cae55afaf

git.kernel.org/...c/abc40122d9a69f56c04efb5a7485795f5ac799d1

cve.org (CVE-2023-53991)

nvd.nist.gov (CVE-2023-53991)

Download JSON

Data based on CVE®. Copyright © 1999-2025, The MITRE Corporation. All rights reserved.