Dangling Pointer Vulnerability in Linux Kernel's MediaTek DRM Component
CVE-2023-53388

7.8HIGH

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
18 September 2025

What is CVE-2023-53388?

A vulnerability has been identified in the MediaTek DRM component of the Linux kernel, where a dangling pointer is held in the private object after a failure in the mtk_drm_bind() function. This situation arises if drm_dev_put() is called to destroy the drm_device object without cleaning the pointer. If a suspend event is triggered during this state, it leads to a system panic as the invalid pointer is referenced in mtk_drm_sys_prepare(). To prevent this, proper management of the pointer during error handling is essential.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

Linux 119f5173628aa7a0c3cf9db83460d40709e8241d < 9a48f99aa7bea15e0b1d8b0040c46b4792eddf3b

Linux 119f5173628aa7a0c3cf9db83460d40709e8241d

Linux 119f5173628aa7a0c3cf9db83460d40709e8241d < 6a89ddee1686a8872384aaa9f0bcfa6b675acd86

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.