Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2023-52844

19
FAUCET Score

CVE-2023-52844 is a NULL pointer dereference vulnerability in the Linux kernel's media: vidtv: psi component, specifically affecting Linux kernel versions. The vulnerability arises from a missing check for the return value of kstrdup(), which could lead to a system crash. With a CVSS score of 6.2 (Medium), it is a local attack vector with low attack complexity, requiring no user interaction, and resulting in high availability impact. There is currently no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage surrounding this vulnerability.

Impacted Technologies

VendorProductVersion(s)CPE
>= 5.10, < 5.10.201CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 5.11, < 5.15.139CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 5.16, < 6.1.63CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 6.2, < 6.5.12CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 6.6, < 6.6.2CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

6.2MEDIUM

CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
HIGH
Exploitability Score
2.5
Impact Score
3.6
CvssVersion
3.1

Exploit Intelligence

EPSS Score
0.25%
Probability of exploitation in next 30 days
EPSS Percentile
16.7%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15
This CVE's current EPSS score of 0.0025 is in the 25th percentile among its peer group of 3,049 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.4 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Vendor Advisories (1)

redhatCVE-2023-52844Low

kernel: media: vidtv: psi: Add check for kstrdup

May 21, 2024

References

git.kernel.org / stable/c/3387490c89b10aeb4e71d78b65dbc9ba4b2385b9
Patch
git.kernel.org / stable/c/5c26aae3723965c291c65dd2ecad6a3240d422b0
Patch
git.kernel.org / stable/c/5cfcc8de7d733a1137b86954cc28ce99972311ad
Patch
git.kernel.org / stable/c/76a2c5df6ca8bd8ada45e953b8c72b746f42918d
Patch
git.kernel.org / stable/c/a51335704a3f90eaf23a6864faefca34b382490a
Patch
git.kernel.org / stable/c/d17269fb9161995303985ab2fe6f16cfb72152f9
Patch