{"schema_version":"1.9.0","id":"CVE-2023-52690","published":"2024-05-17T14:24:50.648Z","modified":"2026-08-12T03:51:46.676554775Z","related":["SUSE-SU-2024:2008-1","SUSE-SU-2024:2011-1","SUSE-SU-2024:2019-1","SUSE-SU-2024:2135-1","SUSE-SU-2024:2189-1","SUSE-SU-2024:2190-1","SUSE-SU-2024:2203-1","SUSE-SU-2024:2973-1","SUSE-SU-2025:20008-1","SUSE-SU-2025:20028-1","SUSE-SU-2025:20166-1","SUSE-SU-2025:20249-1","USN-6818-2","USN-6819-2"],"summary":"powerpc/powernv: Add a null pointer check to scom_debug_init_one()","details":"In the Linux kernel, the following vulnerability has been resolved:\n\npowerpc/powernv: Add a null pointer check to scom_debug_init_one()\n\nkasprintf() returns a pointer to dynamically allocated memory\nwhich can be NULL upon failure.\nAdd a null pointer check, and release 'ent' to avoid memory leaks.","affected":[{"ranges":[{"type":"GIT","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","events":[{"introduced":"bfd2f0d49aef8abfe6bf58f12719f39912993cc6"},{"fixed":"f84c1446daa552e9699da8d1f8375eac0f65edc7"},{"fixed":"1eefa93faf69188540b08b024794fa90b1d82e8b"},{"fixed":"2a82c4439b903639e0a1f21990cd399fb0a49c19"},{"fixed":"ed8d023cfa97b559db58c0e1afdd2eec7a83d8f2"},{"fixed":"dd8422ff271c22058560832fc3006324ded895a9"},{"fixed":"a9c05cbb6644a2103c75b6906e9dafb9981ebd13"},{"fixed":"9a260f2dd827bbc82cc60eb4f4d8c22707d80742"}]}],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-52690.json"}},{"package":{"name":"Kernel","ecosystem":"Linux"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"5.4.0"},{"fixed":"5.4.268"}]},{"type":"ECOSYSTEM","events":[{"introduced":"5.5.0"},{"fixed":"5.10.209"}]},{"type":"ECOSYSTEM","events":[{"introduced":"5.11.0"},{"fixed":"5.15.148"}]},{"type":"ECOSYSTEM","events":[{"introduced":"5.16.0"},{"fixed":"6.1.75"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.2.0"},{"fixed":"6.6.14"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.7.0"},{"fixed":"6.7.2"}]}],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-52690.json"}}],"references":[{"type":"WEB","url":"https://git.kernel.org/stable/c/1eefa93faf69188540b08b024794fa90b1d82e8b"},{"type":"WEB","url":"https://git.kernel.org/stable/c/2a82c4439b903639e0a1f21990cd399fb0a49c19"},{"type":"WEB","url":"https://git.kernel.org/stable/c/9a260f2dd827bbc82cc60eb4f4d8c22707d80742"},{"type":"WEB","url":"https://git.kernel.org/stable/c/a9c05cbb6644a2103c75b6906e9dafb9981ebd13"},{"type":"WEB","url":"https://git.kernel.org/stable/c/dd8422ff271c22058560832fc3006324ded895a9"},{"type":"WEB","url":"https://git.kernel.org/stable/c/ed8d023cfa97b559db58c0e1afdd2eec7a83d8f2"},{"type":"WEB","url":"https://git.kernel.org/stable/c/f84c1446daa552e9699da8d1f8375eac0f65edc7"},{"type":"WEB","url":"https://lists.debian.org/debian-lts-announce/2024/06/msg00016.html"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/52xxx/CVE-2023-52690.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2023-52690"},{"type":"PACKAGE","url":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git"}],"database_specific":{"cna_assigner":"Linux","osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/52xxx/CVE-2023-52690.json"}}