CVE-2023-52470 affects the Linux kernel DRM/Radeon driver because radeon_crtc_init() did not validate the result of alloc_workqueue() when creating its flip_queue. Under an allocation failure, initialization could continue with a NULL workqueue pointer, causing a kernel null-pointer dereference and allowing a local denial of service through a crash, restart, or process exit. Red Hat rates the flaw Low severity (CVSS 3.1: 4.4); confidentiality and integrity are not affected, but availability impact is high.
Upstream and stable kernel patches now allocate and validate the workqueue before DRM CRTC initialization, free the Radeon CRTC object if allocation fails, and exit safely. The fix is included in Linux stable releases, including Fedora's 6.6.16 update. Red Hat issued fixes for standard and real-time RHEL 8 kernels and the standard RHEL 9 kernel; RHEL 6 and 7 variants remained under investigation, while the RHEL 9 real-time kernel fix was deferred.

See affected versions and whether adversaries are exploiting it.
4 events from the most recent confirmed update back to the earliest known activity.
Red Hat released RHSA-2024:7000 for the RHEL 8 kernel and RHSA-2024:7001 for the RHEL 8 real-time kernel to address CVE-2023-52470.
Red Hat released RHSA-2024:2394 for the standard Red Hat Enterprise Linux 9 kernel, addressing CVE-2023-52470.
Yang Yingliang authored a DRM/Radeon fix that checks whether alloc_workqueue() succeeded in radeon_crtc_init(), freeing the Radeon CRTC object and returning safely if allocation fails.
Greg Kroah-Hartman committed stable Linux backports of the Radeon fix, preventing initialization from continuing with a NULL flip_queue after workqueue allocation failure.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See whether adversaries are exploiting this yet, and where the affected versions run in your environment.
7 references tracked. Mallory keeps watching after this page renders.
bugzilla.redhat.com
Open sourceredhat.com
Open sourcegit.kernel.org
Open sourcegit.kernel.org
Open sourcegit.kernel.org
Open sourcegit.kernel.org
Open sourcegit.kernel.org
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.