CVE-2023-53324

Source
https://cve.org/CVERecord?id=CVE-2023-53324
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-53324.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2023-53324
Downstream
Related
Published
2025-09-16T16:11:59.672Z
Modified
2026-07-15T01:49:08.084867619Z
Severity
  • 5.5 (Medium) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H CVSS Calculator
Summary
drm/msm/mdp5: Don't leak some plane state
Details

In the Linux kernel, the following vulnerability has been resolved:

drm/msm/mdp5: Don't leak some plane state

Apparently no one noticed that mdp5 plane states leak like a sieve ever since we introduced plane_state->commit refcount a few years ago in 21a01abbe32a ("drm/atomic: Fix freeing connector/plane state too early by tracking commits, v3.")

Fix it by using the right helpers.

Patchwork: https://patchwork.freedesktop.org/patch/551236/

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/53xxx/CVE-2023-53324.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
21a01abbe32a3cbeb903378a24e504bfd9fe0648
Fixed
7fc11a830b2eb07a0e3c6f917e5e636df6fc5d4c
Fixed
b8a61df6f40448cf46611f7af05b00970d08d620
Fixed
815e42029f6e1e762898079f85546d6a0391ab95
Fixed
c0b1eee648702e04f1005d451f9689575b7f52ed
Fixed
2965015006ef18ca96d2eab9ebe6bca884c63291
Fixed
5b0dd3a102f64996598bd1e8d8388848a7c561bc
Fixed
12dfd02cbd1a678fbd66be0c2f79d5299c4921a9
Fixed
fd0ad3b2365c1c58aa5a761c18efc4817193beb6

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-53324.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
4.15.0
Fixed
4.19.295
Type
ECOSYSTEM
Events
Introduced
4.20.0
Fixed
5.4.257
Type
ECOSYSTEM
Events
Introduced
5.5.0
Fixed
5.10.195
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.132
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.53
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.4.16
Type
ECOSYSTEM
Events
Introduced
6.5.0
Fixed
6.5.3

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-53324.json"