suse · CVE-2023-53228

Quick triage

Priority: medium Published: 2025-10-05 00:32:42 UTC Updated: 2026-04-16 14:47:30 UTC

View at Official suse advisory, NVD, CVE.org · CVE detail

Freshness: upstream tracker timestamp is available; use API updated time as primary recency signal.

Tracker summary

CVE-2023-53228 severity moderate: SUSE including 55 source package names (bpftool-7.3.0-427.13.1.el9_4, cluster-md-kmp-default, …), 307 product×package rows across 55 product lines (SLES-LTSS-TERADATA 15 SP2, SUSE Liberty Linux 9, … (55 product lines)): Known Not Affected 278, Fixed 29.

Description:

In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: drop redundant sched job cleanup when cs is aborted Once command submission failed due to userptr invalidation in amdgpu_cs_submit, legacy code will perform cleanup of scheduler job. However, it's not needed at all, as former commit has integrated job cleanup stuff into amdgpu_job_free. Otherwise, because of double free, a NULL pointer dereference will occur in such scenario. Bug: https://gitlab.freedesktop.org/drm/amd/-/issues/2457

cvelogic Threat Intelligence