CVE-2023-52911
Linux Kernel vulnerability analysis and mitigation

Overview

CVE-2023-52911 is a vulnerability in the Linux kernel affecting the Direct Rendering Manager (DRM) subsystem, specifically in the MSM (Mobile Station Modem) driver for Adreno GPUs. The vulnerability was discovered when a NULL pointer dereference issue was identified during system reboots when the Adreno GPU was operating in headless mode, particularly on iMX platforms (Kernel Git).

Technical details

The vulnerability manifests as a NULL pointer dereference at virtual address 00000000 in the msm_atomic_commit_tail function of the Linux kernel's DRM/MSM driver. The issue occurs specifically during the shutdown process when the GPU is operating in headless mode. The bug was traced to an incomplete check in the shutdown procedure, where the code failed to verify the existence of the KMS (Kernel Mode Setting) component before proceeding with the atomic helper shutdown (Kernel Git).

Impact

When triggered, the vulnerability causes a kernel oops (kernel panic), which can lead to system instability and potential system crashes during reboot operations. This primarily affects systems using Adreno GPUs in headless mode, such as those found in iMX platforms (Kernel Git).

Exploitability

The vulnerability is triggered during system reboot operations and requires specific hardware configurations (Adreno GPU in headless mode) to be exploitable. It appears to be a reliability issue rather than a security exploit, as it primarily affects system stability during shutdown procedures (Kernel Git).

Mitigation and workarounds

The issue has been resolved through a kernel patch that adds an additional check for the KMS component (priv->kms) before calling the drm_atomic_helper_shutdown function. The fix was implemented in the Linux kernel and has been reviewed and approved by kernel maintainers Rob Clark and Abhinav Kumar (Kernel Git).

Additional resources


SourceThis report was generated using AI

Related Linux Kernel vulnerabilities:

CVE ID

Severity

Score

Technologies

Component name

CISA KEV exploit

Has fix

Published date

CVE-2026-74576HIGH7.5
  • Linux Kernel logoLinux Kernel
  • linux-nvidia-6.17
NoYesAug 15, 2026
CVE-2026-74578HIGH7.1
  • Linux Kernel logoLinux Kernel
  • linux-azure-6.8
NoYesAug 16, 2026
CVE-2026-74579LOW3.4
  • Linux Kernel logoLinux Kernel
  • linux-lowlatency-hwe-5.15
NoYesAug 17, 2026
CVE-2025-30156NONEN/A
  • Linux Kernel logoLinux Kernel
  • perf
NoNoAug 21, 2026
CVE-2026-74577NONEN/A
  • Linux Kernel logoLinux Kernel
  • kernel-rt-debug-modules-extra
NoYesAug 15, 2026

Free Vulnerability Assessment

Benchmark your Cloud Security Posture

Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.

Request assessment

Get a personalized demo

Ready to see Wiz in action?

"Best User Experience I have ever seen, provides full visibility to cloud workloads."
David EstlickCISO
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
Adam FletcherChief Security Officer
"We know that if Wiz identifies something as critical, it actually is."
Greg PoniatowskiHead of Threat and Vulnerability Management