CVE-2023-54314 Details
Description
In the Linux kernel, the following vulnerability has been resolved: media: af9005: Fix null-ptr-deref in af9005_i2c_xfer In af9005_i2c_xfer, msg is controlled by user. When msg[i].buf is null and msg[i].len is zero, former checks on msg[i].buf would be passed. Malicious data finally reach af9005_i2c_xfer. If accessing msg[i].buf[0] without sanity check, null ptr deref would happen. We add check on msg[i].len to prevent crash. Similar commit: commit 0ed554fd769a ("media: dvb-usb: az6027: fix null-ptr-deref in az6027_i2c_xfer()")
A null pointer dereference vulnerability has been identified in the Linux kernel's handling of I2C messages in the af9005 USB DVB driver. This issue arises because the 'msg' parameter is user-controlled. When 'msg[i].buf' is null and 'msg[i].len' is zero, the existing checks on 'msg[i].buf' are bypassed, allowing malicious data to reach the 'af9005_i2c_xfer' function. If 'msg[i].buf[0]' is accessed without proper validation, it leads to a null pointer dereference. The vulnerability affects several versions of the Linux kernel.
Users can upgrade to the latest version of the Linux kernel where this vulnerability has been patched. Instructions for upgrading the kernel can be found in the official Linux kernel documentation.
Metrics
CVSS 4.0 Severity and Vector Strings:
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
Volerion
Assessed Dec 30, 2025References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://git.kernel.org/stable/c/033b0c0780adee32dde218179e9bc51d2525108f | kernel.org | Source CodeVendor |
| https://git.kernel.org/stable/c/0c02eb70b1dd4ae9bb304ce6cdadbc6faba2b2e9 | kernel.org | Source CodeVendor |
| https://git.kernel.org/stable/c/63d962ac7a52c0ff4cd09af2e284dce5e5955dfe | kernel.org | Source CodeVendor |
| https://git.kernel.org/stable/c/98c12abb275b75a98ff62de9466d21e4daa98536 | kernel.org | Source CodeVendor |
| https://git.kernel.org/stable/c/abb6fd93e05e80668d2317fe1110bc99b05034c3 | kernel.org | Source CodeVendor |
| https://git.kernel.org/stable/c/c7e5ac737db25d7387fe517cb5207706782b6cf8 | kernel.org | Source CodeVendor |
| https://git.kernel.org/stable/c/e595ff350b2fd600823ee8491df7df693ae4b7c5 | kernel.org | Source CodeVendor |
| https://git.kernel.org/stable/c/f4ee84f27625ce1fdf41e8483fa0561a1b837d10 | kernel.org | Source CodeVendor |
Weakness Enumeration
No weakness enumeration is available for this CVE.
Affected Products
| Product | Versions |
|---|---|
| Linux kernel | All versions |
CPE
Remediation
| |
Change History
2 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jun 17, 2026 | CVE Modified | kernel.org |
| Dec 30, 2025 | New CVE Received | kernel.org |
Volerion