PT-2025-38357 · Linux+2 · Linux Kernel+2

Published

2025-09-18

·

Updated

2025-12-12

·

CVE-2023-53378

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description The Linux kernel contains a flaw within the DRM/i915/dpt subsystem. The i915 gem object is framebuffer() function does not recognize the buffer object (BO) containing the framebuffer’s DPT as a framebuffer itself. This can lead to the DPT BO being evicted by the shrinker while the actual framebuffer BO remains bound, particularly when the DPT is allocated from regular shared memory. This can cause a system crash during hibernation when attempting to rewrite page table entries (PTEs) within the already evicted DPT object. It is suggested that this issue might also be related to display faults under memory pressure, though further investigation is needed.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Allocation of Resources Without Limits

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-06037
CVE-2023-53378
SUSE-SU-2025:03615-1
SUSE-SU-2025:3761-1

Affected Products

Astra Linux
Linux Kernel
Suse