CVE-2023-53336

Source
https://nvd.nist.gov/vuln/detail/CVE-2023-53336
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-53336.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2023-53336
Downstream
Related
Published
2025-09-17T14:56:30Z
Modified
2025-10-21T16:27:35.475453Z
Summary
media: ipu-bridge: Fix null pointer deref on SSDB/PLD parsing warnings
Details

In the Linux kernel, the following vulnerability has been resolved:

media: ipu-bridge: Fix null pointer deref on SSDB/PLD parsing warnings

When ipubridgeparserotation() and ipubridgeparseorientation() run sensor->adev is not set yet.

So if either of the dev_warn() calls about unknown values are hit this will lead to a NULL pointer deref.

Set sensor->adev earlier, with a borrowed ref to avoid making unrolling on errors harder, to fix this.

References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
485aa3df0dffa62d347ea4e0116f549338accc59
Fixed
3de35e29cfddfe6bff762b15bcfe8d80bebac6cb
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
485aa3df0dffa62d347ea4e0116f549338accc59
Fixed
e08b091e33ecf6e4cb2c0c5820a69abe7673280b
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
485aa3df0dffa62d347ea4e0116f549338accc59
Fixed
284be5693163343e1cf17c03917eecd1d6681bcf

Affected versions

v5.*

v5.15
v5.15-rc5
v5.15-rc6
v5.15-rc7
v5.16
v5.16-rc1
v5.16-rc2
v5.16-rc3
v5.16-rc4
v5.16-rc5
v5.16-rc6
v5.16-rc7
v5.16-rc8
v5.17
v5.17-rc1
v5.17-rc2
v5.17-rc3
v5.17-rc4
v5.17-rc5
v5.17-rc6
v5.17-rc7
v5.17-rc8
v5.18
v5.18-rc1
v5.18-rc2
v5.18-rc3
v5.18-rc4
v5.18-rc5
v5.18-rc6
v5.18-rc7
v5.19
v5.19-rc1
v5.19-rc2
v5.19-rc3
v5.19-rc4
v5.19-rc5
v5.19-rc6
v5.19-rc7
v5.19-rc8

v6.*

v6.0
v6.0-rc1
v6.0-rc2
v6.0-rc3
v6.0-rc4
v6.0-rc5
v6.0-rc6
v6.0-rc7
v6.1
v6.1-rc1
v6.1-rc2
v6.1-rc3
v6.1-rc4
v6.1-rc5
v6.1-rc6
v6.1-rc7
v6.1-rc8
v6.2
v6.2-rc1
v6.2-rc2
v6.2-rc3
v6.2-rc4
v6.2-rc5
v6.2-rc6
v6.2-rc7
v6.2-rc8
v6.3
v6.3-rc1
v6.3-rc2
v6.3-rc3
v6.3-rc4
v6.3-rc5
v6.3-rc6
v6.3-rc7
v6.4
v6.4-rc1
v6.4-rc2
v6.4-rc3
v6.4-rc4
v6.4-rc5
v6.4-rc6
v6.4-rc7
v6.4.1
v6.4.10
v6.4.11
v6.4.12
v6.4.13
v6.4.14
v6.4.15
v6.4.2
v6.4.3
v6.4.4
v6.4.5
v6.4.6
v6.4.7
v6.4.8
v6.4.9
v6.5
v6.5-rc1
v6.5-rc2
v6.5-rc3
v6.5-rc4
v6.5-rc5
v6.5-rc6
v6.5-rc7
v6.5.1
v6.5.2

Database specific

vanir_signatures

[
    {
        "id": "CVE-2023-53336-0a204719",
        "target": {
            "function": "cio2_bridge_connect_sensor",
            "file": "drivers/media/pci/intel/ipu3/cio2-bridge.c"
        },
        "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@e08b091e33ecf6e4cb2c0c5820a69abe7673280b",
        "signature_type": "Function",
        "digest": {
            "function_hash": "164649479781041617888667870742522142095",
            "length": 1700.0
        },
        "deprecated": false,
        "signature_version": "v1"
    },
    {
        "id": "CVE-2023-53336-4127a5d1",
        "target": {
            "function": "cio2_bridge_connect_sensor",
            "file": "drivers/media/pci/intel/ipu3/cio2-bridge.c"
        },
        "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@3de35e29cfddfe6bff762b15bcfe8d80bebac6cb",
        "signature_type": "Function",
        "digest": {
            "function_hash": "164649479781041617888667870742522142095",
            "length": 1700.0
        },
        "deprecated": false,
        "signature_version": "v1"
    },
    {
        "id": "CVE-2023-53336-69784e3d",
        "target": {
            "file": "drivers/media/pci/intel/ipu3/cio2-bridge.c"
        },
        "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@e08b091e33ecf6e4cb2c0c5820a69abe7673280b",
        "signature_type": "Line",
        "digest": {
            "threshold": 0.9,
            "line_hashes": [
                "223528931888607376662972244082879129502",
                "169218348078967462722912893122106719936",
                "303840005526567361097048015905140284330",
                "52613963111732256177265862908240755782"
            ]
        },
        "deprecated": false,
        "signature_version": "v1"
    },
    {
        "id": "CVE-2023-53336-8b2d6151",
        "target": {
            "file": "drivers/media/pci/intel/ipu-bridge.c"
        },
        "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@284be5693163343e1cf17c03917eecd1d6681bcf",
        "signature_type": "Line",
        "digest": {
            "threshold": 0.9,
            "line_hashes": [
                "102929841191963266326431149450994559666",
                "191729168067833808218397775235536578264",
                "52681591378584848223918714540493508829",
                "150051357640277940826534247900708134453"
            ]
        },
        "deprecated": false,
        "signature_version": "v1"
    },
    {
        "id": "CVE-2023-53336-ca7d628c",
        "target": {
            "file": "drivers/media/pci/intel/ipu3/cio2-bridge.c"
        },
        "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@3de35e29cfddfe6bff762b15bcfe8d80bebac6cb",
        "signature_type": "Line",
        "digest": {
            "threshold": 0.9,
            "line_hashes": [
                "223528931888607376662972244082879129502",
                "169218348078967462722912893122106719936",
                "303840005526567361097048015905140284330",
                "52613963111732256177265862908240755782"
            ]
        },
        "deprecated": false,
        "signature_version": "v1"
    },
    {
        "id": "CVE-2023-53336-e351a4c2",
        "target": {
            "function": "ipu_bridge_connect_sensor",
            "file": "drivers/media/pci/intel/ipu-bridge.c"
        },
        "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@284be5693163343e1cf17c03917eecd1d6681bcf",
        "signature_type": "Function",
        "digest": {
            "function_hash": "139118743132765207496677223277515721872",
            "length": 1696.0
        },
        "deprecated": false,
        "signature_version": "v1"
    }
]

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.4.16
Type
ECOSYSTEM
Events
Introduced
6.5.0
Fixed
6.5.3