Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2023-52847

19
FAUCET Score

CVE-2023-52847 describes a use-after-free vulnerability in the Linux kernel's bttv media driver. This flaw arises from a race condition between the bttv_irq_timeout timer function and the bttv_remove function, potentially leading to the timer accessing freed memory. With a CVSS score of 7.0 (High), successful exploitation requires local access and high attack complexity, but could result in high confidentiality, integrity, and availability impacts. There is currently no evidence of active exploitation, public exploit code, or significant community discussion surrounding this vulnerability.

Impacted Technologies

VendorProductVersion(s)CPE
>= 4.15, < 4.19.299CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 4.20, < 5.4.261CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 5.5, < 5.10.201CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 5.11, < 5.15.139CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 5.16, < 6.1.63CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

7.0HIGH

CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H

Attack Vector
LOCAL
Attack Complexity
HIGH
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
Exploitability Score
1.0
Impact Score
5.9
CvssVersion
3.1

Exploit Intelligence

EPSS Score
0.18%
Probability of exploitation in next 30 days
EPSS Percentile
8.3%
Percentile rank of EPSS score among Peer Group
As of 2026-07-28
Model: v2026.06.15
This CVE's current EPSS score of 0.0018 is in the 31st percentile among its peer group of 1,525 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.4 InfoSec Media, 0.1 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (2)

redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8Fixed in: kernel-rt-0:4.18.0-553.16.1.rt7.357.el8_10
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8Fixed in: kernel-0:4.18.0-553.16.1.el8_10
View patch

Vendor Advisories (1)

redhatCVE-2023-52847Low

kernel: media: bttv: fix use after free error due to btv->timeout timer

May 21, 2024

References

git.kernel.org / stable/c/1871014d6ef4812ad11ef7d838d73ce09d632267
Mailing ListPatch
git.kernel.org / stable/c/20568d06f6069cb835e05eed432edf962645d226
Mailing ListPatch
git.kernel.org / stable/c/2f3d9198cdae1cb079ec8652f4defacd481eab2b
Mailing ListPatch
git.kernel.org / stable/c/51c94256a83fe4e17406c66ff3e1ad7d242d8574
Mailing ListPatch
git.kernel.org / stable/c/847599fffa528b2cdec4e21b6bf7586dad982132
Mailing ListPatch
git.kernel.org / stable/c/b35fdade92c5058a5e727e233fe263b828de2c9a
Mailing ListPatch
git.kernel.org / stable/c/bbc3b8dd2cb7817e703f112d988e4f4728f0f2a9
Mailing ListPatch
git.kernel.org / stable/c/bd5b50b329e850d467e7bcc07b2b6bde3752fbda
Mailing ListPatch