CVE-2023-52459: Linux Kernel

Medium severity, CVSS 5.5. EPSS: 0.2% chance of exploitation in the next 30 days.

In the Linux kernel, the following vulnerability has been resolved: media: v4l: async: Fix duplicated list deletion The list deletion call dropped here is already called from the helper function in the line before. Having a second list_del() call results in either a warning (with CONFIG_DEBUG_LIST=y): list_del corruption, c46c8198->next is LIST_POISON1 (00000100) If CONFIG_DEBUG_LIST is disabled the operation results in a kernel error due to NULL pointer dereference.

Affected products

  • Linux Linux Kernel: from 6.6.0, before 6.6.14 (fixed in 6.6.14); from 6.7.0, before 6.7.2 (fixed in 6.7.2)

Published 2024-02-23. Last modified 2026-06-17.