CVE-2023-53425

Source
https://cve.org/CVERecord?id=CVE-2023-53425
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-53425.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2023-53425
Downstream
Related
Published
2025-09-18T16:04:07.335Z
Modified
2026-07-15T01:49:04.492059958Z
Severity
  • 5.5 (Medium) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H CVSS Calculator
Summary
media: platform: mediatek: vpu: fix NULL ptr dereference
Details

In the Linux kernel, the following vulnerability has been resolved:

media: platform: mediatek: vpu: fix NULL ptr dereference

If pdev is NULL, then it is still dereferenced.

This fixes this smatch warning:

drivers/media/platform/mediatek/vpu/mtkvpu.c:570 vpuload_firmware() warn: address of NULL pointer 'pdev'

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/53xxx/CVE-2023-53425.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
3003a180ef6b9462f3cccc2a89884ef2332d2a1c
Fixed
099e929e7477f37ca16738fc158d7101c0189ca1
Fixed
1b3f25d3894a091abc247eadab266a2c9be64389
Fixed
c1c5826223ae05a48d21f6708c6f34ee9006238c
Fixed
2caeb722f0ea5d2d24af30bb1753a89d449b6aa0
Fixed
776b34615a29551d69d82a0082e7319d5ea284bd
Fixed
b7bd48f0be84e24d21aa3a8f59a8a9cb8633a1c4
Fixed
4d299e6e0ac3cf8ab4517dc29c9294bc4bf72398
Fixed
3df55cd773e8603b623425cc97b05e542854ad27

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-53425.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
4.8.0
Fixed
4.14.324
Type
ECOSYSTEM
Events
Introduced
4.15.0
Fixed
4.19.293
Type
ECOSYSTEM
Events
Introduced
4.20.0
Fixed
5.4.255
Type
ECOSYSTEM
Events
Introduced
5.5.0
Fixed
5.10.192
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.128
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.47
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.4.12

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-53425.json"