Bug 2301461 (CVE-2023-52888) - CVE-2023-52888 kernel: media: mediatek: vcodec: Only free buffer VA that is not NULL
Summary: CVE-2023-52888 kernel: media: mediatek: vcodec: Only free buffer VA that is n...
Keywords:
Status: NEW
Alias: CVE-2023-52888
Product: Security Response
Classification: Other
Component: vulnerability
Version: unspecified
Hardware: All
OS: Linux
low
low
Target Milestone: ---
Assignee: Product Security DevOps Team
QA Contact:
URL:
Whiteboard:
Depends On: 2301654
Blocks:
TreeView+ depends on / blocked
 
Reported: 2024-07-30 08:20 UTC by OSIDB Bzimport
Modified: 2024-07-31 04:49 UTC (History)
4 users (show)

Fixed In Version: kernel 6.6.39, kernel 6.9.9, kernel 6.10
Clone Of:
Environment:
Last Closed:
Embargoed:


Attachments (Terms of Use)

Description OSIDB Bzimport 2024-07-30 08:20:13 UTC
In the Linux kernel, the following vulnerability has been resolved:

media: mediatek: vcodec: Only free buffer VA that is not NULL

In the MediaTek vcodec driver, while mtk_vcodec_mem_free() is mostly
called only when the buffer to free exists, there are some instances
that didn't do the check and triggered warnings in practice.

We believe those checks were forgotten unintentionally. Add the checks
back to fix the warnings.

Comment 1 Mauro Matteo Cascella 2024-07-30 14:52:55 UTC
Upstream advisory:
https://lore.kernel.org/linux-cve-announce/2024073015-CVE-2023-52888-51c6@gregkh/T

Comment 2 Mauro Matteo Cascella 2024-07-30 14:53:16 UTC
Created kernel tracking bugs for this issue:

Affects: fedora-all [bug 2301654]


Note You need to log in before you can comment on or make changes to this bug.