CVE-2023-23000: Linux Kernel

Medium severity, CVSS 5.5. EPSS: 0.3% chance of exploitation in the next 30 days.

In the Linux kernel before 5.17, drivers/phy/tegra/xusb.c mishandles the tegra_xusb_find_port_node return value. Callers expect NULL in the error case, but an error pointer is used.

Affected products

  • Linux Linux Kernel: before 5.17 (fixed in 5.17)

Published 2023-03-01. Last modified 2026-06-17.