PT-2025-38368 · Mediatek+2 · Mediatek Displayport+2
Published
2025-09-18
·
Updated
2025-09-19
·
CVE-2023-53389
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Linux kernel (affected versions not specified)
Description
The MediaTek DisplayPort interface bridge driver initiates interrupts immediately after probing. If the bridge isn't yet connected to a DRM device, a NULL pointer dereference can occur within the
drm helper hpd irq event() function because it doesn't validate the drm device pointer. This issue is resolved by ensuring an HPD event is triggered only when the bridge is attached.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
NULL Pointer Dereference
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Astra Linux
Linux Kernel
Mediatek Displayport