PT-2025-38357 · Linux+2 · Linux Kernel+2
Published
2025-09-18
·
Updated
2025-12-12
·
CVE-2023-53378
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Linux kernel (affected versions not specified)
Description
The Linux kernel contains a flaw within the DRM/i915/dpt subsystem. The
i915 gem object is framebuffer() function does not recognize the buffer object (BO) containing the framebuffer’s DPT as a framebuffer itself. This can lead to the DPT BO being evicted by the shrinker while the actual framebuffer BO remains bound, particularly when the DPT is allocated from regular shared memory. This can cause a system crash during hibernation when attempting to rewrite page table entries (PTEs) within the already evicted DPT object. It is suggested that this issue might also be related to display faults under memory pressure, though further investigation is needed.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Allocation of Resources Without Limits
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Astra Linux
Linux Kernel
Suse