CVE-2023-53242

Source
https://cve.org/CVERecord?id=CVE-2023-53242
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-53242.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2023-53242
Downstream
Related
Published
2025-09-15T14:23:11.251Z
Modified
2026-07-15T01:49:12.867874836Z
Severity
  • 5.5 (Medium) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H CVSS Calculator
Summary
thermal/drivers/hisi: Drop second sensor hi3660
Details

In the Linux kernel, the following vulnerability has been resolved:

thermal/drivers/hisi: Drop second sensor hi3660

The commit 74c8e6bffbe1 ("driver core: Add _allocsize hint to devm allocators") exposes a panic "BRK handler: Fatal exception" on the hi3660thermalprobe funciton. This is because the function allocates memory for only one sensors array entry, but tries to fill up a second one.

Fix this by removing the unneeded second access.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/53xxx/CVE-2023-53242.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
7d3a2a2bbadb4bf5856ed394ba09b8fbb7a80460
Fixed
3cf2181e438f43ed24e12424fe36d156cca233b9
Fixed
e02bc492883abf751fd1a8d89fc025fbce6744c6
Fixed
f5aaf140ab1c02889c088e1b1098adad600541af
Fixed
9f6756cd09889c7201ee31e6f76fbd914fb0b80d
Fixed
68e675a9b69cfc34dd915d91a4650e3ee53421f4
Fixed
15cc25829a97c3957e520e971868aacc84341317

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-53242.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
4.20.0
Fixed
5.4.235
Type
ECOSYSTEM
Events
Introduced
5.5.0
Fixed
5.10.173
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.99
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.16
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.2.3

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-53242.json"