CVE-2023-52865: clk: mediatek: clk-mt6797: Add check for mtk_alloc_clk_data

Description

In the Linux kernel, the following vulnerability has been resolved:

clk: mediatek: clk-mt6797: Add check for mtk_alloc_clk_data

Add the check for the return value of mtk_alloc_clk_data() in order to
avoid NULL pointer dereference.

Classification

CVE ID: CVE-2023-52865

Affected Products

Vendor: Linux

Product: Linux

Exploit Prediction Scoring System (EPSS)

EPSS Score: 0.04% (probability of being exploited)

EPSS Percentile: 5.06% (scored less or equal to compared to others)

EPSS Date: 2025-02-03 (when was this score calculated)

References

https://git.kernel.org/stable/c/c26feedbc561f2a3cee1a4f717e61bdbdfb4fa92
https://git.kernel.org/stable/c/4c79cbfb8e9e2311be77182893fda5ea4068c836
https://git.kernel.org/stable/c/2705c5b97f504e831ae1935c05f0e44f80dfa6b3
https://git.kernel.org/stable/c/81b16286110728674dcf81137be0687c5055e7bf
https://git.kernel.org/stable/c/3aefc6fcfbada57fac27f470602d5565e5b76cb4
https://git.kernel.org/stable/c/357df1c2f6ace96defd557fad709ed1f9f70e16c
https://git.kernel.org/stable/c/be3f12f16038a558f08fa93cc32fa715746a5235
https://git.kernel.org/stable/c/122ac6496e4975ddd7ec1edba4f6fc1e15e39478
https://git.kernel.org/stable/c/606f6366a35a3329545e38129804d65ef26ed7d2

Timeline