CVE-2023-52882
MediumIn the Linux kernel, the following vulnerability has been resolved: clk: sunxi-ng: h6: Reparent CPUX during PLL CPUX rate change While PLL CPUX clock rate change when CPU is running from it works in vast majority of cases, now and then it causes instability. This leads to system crashes and other undefined behaviour. After a lot of testing (30+ hours) while also doing a lot of frequency switches, we can't observe any instability issues anymore when doing reparenting to stable clock like 24 MHz oscillator.
CVSS 3.1 score
5.5
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
References
The following references provide additional information about CVE-2023-52882 including vendor advisories, patch commits, exploit details, and third-party analysis. Links are sourced from the NIST NVD database.
-
Third Party Advisory
-
Third Party Advisory
-
PatchKernel patch commithttps://git.kernel.org/stable/c/0b82eb134d2942ecc669e2ab2be3f0a58d79428a
-
PatchKernel patch commithttps://git.kernel.org/stable/c/70f64cb29014e4c4f1fabd3265feebd80590d069
-
PatchKernel patch commithttps://git.kernel.org/stable/c/7e91ed763dc07437777bd012af7a2bd4493731ff
Frequently asked questions
-
What is CVE-2023-52882?
CVE-2023-52882 is a Medium severity Linux kernel vulnerability with a CVSS score of 5.5 out of 10 . CVE-2023-52882 has not been confirmed as actively exploited and is not listed in the CISA KEV catalog.
-
What is the CVSS score for CVE-2023-52882?
CVE-2023-52882 has a CVSS score of 5.5 out of 10, rated Medium severity (CVSS 3.1). The vector string is
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H. -
Is there a patch available for CVE-2023-52882?
No patch is currently available for CVE-2023-52882. Monitor the NIST NVD and your Linux distribution's security advisories for updates.
-
Is CVE-2023-52882 actively exploited?
No — CVE-2023-52882 has not been confirmed as actively exploited. It is not listed in the CISA Known Exploited Vulnerabilities (KEV) catalog.