media: hantro: Check whether reset op is defined before use
Published May 21, 2024
5.5
MEDIUMCVSS 3.1
EPSS 0.24%
Description
The i.MX8MM/N/P does not define the .reset op since reset of the VPU is done by genpd. Check whether the .reset op is defined before calling it to avoid NULL pointer dereference.
Note that the Fixes tag is set to the commit which removed the reset op from i.MX8M Hantro G2 implementation, this is because before this commit all the implementations did define the .reset op.
Affected products
-
- Version 6971efb70ac3StatusaffectedConstraints<24c06295f283
- Version 6971efb70ac3StatusaffectedConstraints<64f55cebb433
- Version 6971efb70ac3StatusaffectedConstraints<66b4c5f980d7
- Version 6971efb70ac3StatusaffectedConstraints<88d4b23a629e
- Version
-
- Version 5.18StatusaffectedConstraints-
- Version 0StatusunaffectedConstraints<5.18
- Version 6.1.63StatusunaffectedConstraints<=6.1.*
- Version 6.5.12StatusunaffectedConstraints<=6.5.*
- Version 6.6.2StatusunaffectedConstraints<=6.6.*
- Version 6.7StatusunaffectedConstraints<=*
- Version
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
| Vendor | Product | Default status | Versions | |||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| Linux | Linux | unaffected |
| |||||||||||||||||||||
| Linux | Linux | affected |
|
- ≥ 5.18 · < 6.1.63
- ≥ 6.2 · < 6.5.12
- ≥ 6.6 · < 6.6.2
No data.
Red Hat Enterprise Linux 6
kernel
Not affected
Red Hat Enterprise Linux 7
kernel
Not affected
Red Hat Enterprise Linux 7
kernel-rt
Not affected
Red Hat Enterprise Linux 8
kernel
Not affected
Red Hat Enterprise Linux 8
kernel-rt
Not affected
Red Hat Enterprise Linux 9
kernel
Not affected
Red Hat Enterprise Linux 9
kernel-rt
Not affected
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 6 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 7 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 7 | kernel-rt | Not affected | n/a |
| Red Hat Enterprise Linux 8 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 8 | kernel-rt | Not affected | n/a |
| Red Hat Enterprise Linux 9 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 9 | kernel-rt | Not affected | n/a |
No package ranges for this CVE.
Remediation
No remediation recorded yet.
References (10)
- https://access.redhat.com/security/cve/CVE-2023-52850 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2282677 Issue Tracking
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2023-59563 Advisory
- https://git.kernel.org/stable/c/24c06295f28335ced3aad53dd4b0a0bae7b9b100 Patch
- https://git.kernel.org/stable/c/64f55cebb4339ae771e9e7f3f42bee2489e2fa00 Patch
- https://git.kernel.org/stable/c/66b4c5f980d741f3a47e4b65eeaf2797f2d59294 Patch
- https://git.kernel.org/stable/c/88d4b23a629ebd34f682f770cb6c2116c851f7b8 Patch
- https://lore.kernel.org/linux-cve-announce/2024052114-CVE-2023-52850-d1a1@gregkh/T
- https://nvd.nist.gov/vuln/detail/CVE-2023-52850
- https://www.cve.org/CVERecord?id=CVE-2023-52850
Change history (0)
No recorded changes yet.