CVE-2023-54147

Source
https://cve.org/CVERecord?id=CVE-2023-54147
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-54147.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2023-54147
Downstream
Published
2025-12-24T13:06:59.566Z
Modified
2026-04-02T09:45:37.744008Z
Summary
media: platform: mtk-mdp3: Add missing check and free for ida_alloc
Details

In the Linux kernel, the following vulnerability has been resolved:

media: platform: mtk-mdp3: Add missing check and free for ida_alloc

Add the check for the return value of the idaalloc in order to avoid NULL pointer dereference. Moreover, free allocated "ctx->id" if mdpm2m_open fails later in order to avoid memory leak.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/54xxx/CVE-2023-54147.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
61890ccaefaff89f5babd2c8412fd222c3f5fe38
Fixed
51fc1880e47421ee7b192372e8e86b7bbba40776
Fixed
4c173a65a2b1cc0556c3f6f0bab82e4fdb449522
Fixed
22b72cad501fb75500cc60af4d92de3066fb6fc2
Fixed
d00f592250782538cda87745607695b0fe27dcd4

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-54147.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
6.1.0
Fixed
6.1.28
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.2.15
Type
ECOSYSTEM
Events
Introduced
6.3.0
Fixed
6.3.2

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-54147.json"