SB20240603226 - Improper error handling in Linux kernel dts qcom
Published: June 3, 2024 Updated: May 14, 2025
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 security vulnerability.
1) Improper error handling (CVE-ID: CVE-2023-52561)
The vulnerability allows a local user to perform a denial of service (DoS) attack.
The vulnerability exists due to improper error handling within the arch/arm64/boot/dts/qcom/sdm845-db845c.dts. A local user can perform a denial of service (DoS) attack.
Remediation
Install update from vendor's website.
References
- https://git.kernel.org/stable/c/dc1ab6577475b0460ba4261cd9caec37bd62ca0b
- https://git.kernel.org/stable/c/82dacd0ca0d9640723824026d6fdf773c02de1d2
- https://git.kernel.org/stable/c/110e70fccce4f22b53986ae797d665ffb1950aa6
- https://mirrors.edge.kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.1.56
- https://mirrors.edge.kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.5.6
- https://mirrors.edge.kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.6