CVE-2023-52921: Linux Kernel

High severity, CVSS 7.8. EPSS: 0.2% chance of exploitation in the next 30 days.

In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: fix possible UAF in amdgpu_cs_pass1() Since the gang_size check is outside of chunk parsing loop, we need to reset i before we free the chunk data. Suggested by Ye Zhang (@VAR10CK) of Baidu Security.

Affected products

  • Linux Linux Kernel: before 6.1.46 (fixed in 6.1.46); from 6.2, before 6.4.11 (fixed in 6.4.11); version 6.5 only

Published 2024-11-19. Last modified 2026-06-17.