Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2023-52884

15
FAUCET Score

CVE-2023-52884 is a vulnerability in the Linux kernel's cyapa input driver, affecting the suspend/resume functions. It stems from missing input core locking, which can lead to system warnings and potential instability during suspend/resume cycles, particularly on Samsung Exynos5250-based Snow Chromebooks. The vulnerability has a CVSS score of 4.4 (Medium), indicating a local attack vector with low attack complexity, requiring high privileges, and primarily impacting availability. While it can cause system instability, there is no direct impact on confidentiality or integrity. Currently, there is no evidence of active exploitation, and no public exploit code is available on platforms like Metasploit, Nuclei, or ExploitDB. Community discussion and media coverage are minimal, suggesting low public awareness and attention.

Impacted Technologies

VendorProductVersion(s)CPE
>= 5.11, < 5.15.161CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 5.16, < 6.1.93CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 6.2, < 6.6.33CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 6.7, < 6.9.4CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

4.4MEDIUM

CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H

Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
HIGH
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
HIGH
Exploitability Score
0.8
Impact Score
3.6
CvssVersion
3.1

Exploit Intelligence

EPSS Score
0.18%
Probability of exploitation in next 30 days
EPSS Percentile
7.5%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15
This CVE's current EPSS score of 0.0018 is in the 46th percentile among its peer group of 3,720 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (2)

redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 9Fixed in: kernel-0:5.14.0-427.37.1.el9_4
View patch
redhatvendor investigatingvia redhat_api
Product: Red Hat Enterprise Linux 9Fixed in: kernel-rt

Vendor Advisories (1)

redhatCVE-2023-52884Low

kernel: Input: cyapa - add missing input core locking to suspend/resume functions

Jun 21, 2024

References

git.kernel.org / stable/c/7b4e0b39182cf5e677c1fc092a3ec40e621c25b6
Patch
git.kernel.org / stable/c/9400caf566f65c703e99d95f87b00c4b445627a7
Patch
git.kernel.org / stable/c/a4c638ab25786bd5aab5978fe51b2b9be16a4ebd
Patch
git.kernel.org / stable/c/a5fc298fa8f67cf1f0e1fc126eab70578cd40adc
Patch
git.kernel.org / stable/c/f99809fdeb50d65bcbc1661ef391af94eebb8a75
Patch