CVE-2023-53470: Linux Kernel

Medium severity, CVSS 5.5. EPSS: 0.2% chance of exploitation in the next 30 days.

In the Linux kernel, the following vulnerability has been resolved: ionic: catch failure from devlink_alloc Add a check for NULL on the alloc return. If devlink_alloc() fails and we try to use devlink_priv() on the NULL return, the kernel gets very unhappy and panics. With this fix, the driver load will still fail, but at least it won't panic the kernel.

Affected products

  • Linux Linux Kernel: from 5.4, before 5.15.112 (fixed in 5.15.112); from 5.16, before 6.1.29 (fixed in 6.1.29); from 6.2, before 6.2.16 (fixed in 6.2.16); from 6.3, before 6.3.3 (fixed in 6.3.3)

Published 2025-10-01. Last modified 2026-06-17.