CVE-2023-52994
CVSS 3.1 Score 5.5 of 10 (medium)
Details
Published Mar 27, 2025
Updated: Apr 15, 2025
CWE ID 476
Summary
CVE-2023-52994: A vulnerability was identified in the Linux kernel that led to a NULL pointer dereference during system suspension when running as a Xen PV guest. This issue occurred due to a missed code path accessing real_mode_header, causing a kernel panic and potentially crashing the system. The vulnerability has been addressed by adding an optional acpi callback allowing the skipping of setting the wakeup address, as this task is handled by the hypervisor in the Xen PV case.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Linux Kernel
Affected Vendors
- LINUX