PT-2025-38368 · Mediatek+2 · Mediatek Displayport+2

Published

2025-09-18

·

Updated

2025-09-19

·

CVE-2023-53389

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description The MediaTek DisplayPort interface bridge driver initiates interrupts immediately after probing. If the bridge isn't yet connected to a DRM device, a NULL pointer dereference can occur within the drm helper hpd irq event() function because it doesn't validate the drm device pointer. This issue is resolved by ensuring an HPD event is triggered only when the bridge is attached.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

NULL Pointer Dereference

Weakness Enumeration

Related Identifiers

CVE-2023-53389

Affected Products

Astra Linux
Linux Kernel
Mediatek Displayport