CVE-2023-53139

Source
https://cve.org/CVERecord?id=CVE-2023-53139
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2023-53139.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2023-53139
Downstream
Related
Published
2025-05-02T15:56:11.007Z
Modified
2026-03-12T03:28:01.188090Z
Summary
nfc: fdp: add null check of devm_kmalloc_array in fdp_nci_i2c_read_device_properties
Details

In the Linux kernel, the following vulnerability has been resolved:

nfc: fdp: add null check of devmkmallocarray in fdpncii2creaddevice_properties

devmkmallocarray may fails, *fwvsccfg might be null and cause out-of-bounds write in devicepropertyreadu8array later.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/53xxx/CVE-2023-53139.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
a06347c04c13e380afce0c9816df51f00b83faf1
Fixed
ad11b872bc9b5d27e56183c6b01f9218c85395d2
Fixed
98f49e693e02c1dafd5786be3468657840dd6f06
Fixed
0a3664a1058d4b2b1ea2112cc275ca47fba7fc08
Fixed
80be62358fa5507cefbaa067c7e6648401f2c3da
Fixed
4357bbb921fe9e81d0fd9f70d669d1f177d8380e
Fixed
ce93f1afc05941a572f5a69e2ed4012af905a693
Fixed
27824b2f98818215adc9661e563252c48dab1a13
Fixed
11f180a5d62a51b484e9648f9b310e1bd50b1a57

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2023-53139.json"