Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2023-53152

18
FAUCET Score

CVE-2023-53152 is a vulnerability in the Linux kernel's AMDGPU driver, specifically affecting the amddrm_buddy_fini function. It occurs when the driver is removed, leading to a call trace warning because certain Buffer Objects (BOs) allocated for the PSP (Platform Security Processor) are not properly freed. This issue impacts Linux kernel versions utilizing the AMDGPU driver. The vulnerability has a CVSS v3.1 score of 5.5 (Medium), with an attack vector of Local, low attack complexity, and no user interaction required. The potential impact is a High availability loss (A:H), indicating that an attacker could cause a denial of service or system instability. The CWE-772 classification points to an improper cleanup of allocated resources. Currently, there is no evidence of active exploitation, and no exploit code is publicly available on platforms like Metasploit, Nuclei, or ExploitDB. The vulnerability is not listed in CISA's KEV catalog, and community discussion and media coverage are minimal, suggesting low public awareness and attention.

Impacted Technologies

VendorProductVersion(s)CPE
>= 4.12, < 6.1.47CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 6.2, < 6.4.12CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

5.5MEDIUM

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
HIGH
Exploitability Score
1.8
Impact Score
3.6
CvssVersion
3.1

Exploit Intelligence

EPSS Score
0.14%
Probability of exploitation in next 30 days
EPSS Percentile
4.1%
Percentile rank of EPSS score among Peer Group
As of 2026-07-28
Model: v2026.06.15
This CVE's current EPSS score of 0.0014 is in the 25th percentile among its peer group of 15,940 CVEs.

Social Chatter

No social media mentions found for this CVE.

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (2)

redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 9Fixed in: kernel-0:5.14.0-427.13.1.el9_4
View patch
redhatvendor investigatingvia redhat_api
Product: Red Hat Enterprise Linux 9Fixed in: kernel-rt

Vendor Advisories (2)

redhatCVE-2023-53152Moderate

kernel: drm/amdgpu: fix calltrace warning in amddrm_buddy_fini

Sep 15, 2025
microsoft2025-Sep/CVE-2023-53152Moderate

drm/amdgpu: fix calltrace warning in amddrm_buddy_fini

Sep 9, 2025

References

git.kernel.org / stable/c/01382501509871d0799bab6bd412c228486af5bf
Patch
git.kernel.org / stable/c/756d674117f5c451f415d1c4046b927052a90c14
Patch
git.kernel.org / stable/c/ab6f446c220db0c131f2071846afd835799be0fb
Patch