Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2023-52863

17
FAUCET Score

CVE-2023-52863 is a NULL pointer dereference vulnerability in the Linux kernel's axi-fan-control hwmon driver. This flaw can occur if the interrupt handler is called before the hwmon device is fully registered, leading to a kernel crash. Rated Medium with a CVSS score of 5.5, it requires local access and low privileges to achieve a denial-of-service impact. There is currently no evidence of active exploitation, public exploit code, or significant community discussion surrounding this vulnerability.

Impacted Technologies

VendorProductVersion(s)CPE
>= 5.7, < 5.10.201CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 5.11, < 5.15.139CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 5.16, < 6.1.63CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 6.2, < 6.5.12CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 6.6, < 6.6.2CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

5.5MEDIUM

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
HIGH
Exploitability Score
1.8
Impact Score
3.6
CvssVersion
3.1

Exploit Intelligence

EPSS Score
0.24%
Probability of exploitation in next 30 days
EPSS Percentile
15.3%
Percentile rank of EPSS score among Peer Group
As of 2026-07-28
Model: v2026.06.15
This CVE's current EPSS score of 0.0024 is in the 66th percentile among its peer group of 15,940 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Vendor Advisories (1)

redhatCVE-2023-52863Low

kernel: hwmon: (axi-fan-control) Fix possible NULL pointer dereference

May 21, 2024

References

git.kernel.org / stable/c/2a5b3370a1d9750eca325292e291c8c7cb8cf2e0
Patch
git.kernel.org / stable/c/33de53a2706066d526173dc743faf43d92c62105
Patch
git.kernel.org / stable/c/7d870088db4863c514a7f8751cd593751983029a
Patch
git.kernel.org / stable/c/b3e7eb23a6e97642ff3190431c06475d9ca1e062
Patch
git.kernel.org / stable/c/c49f14cc1bb12c625a1c572e8a95b6adefd4d8eb
Patch
git.kernel.org / stable/c/f62b8969847850ba7596cb145cc47c65ea57dae0
Patch