U.S. flag   An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.

CVE-2023-54279 Detail

Description

In the Linux kernel, the following vulnerability has been resolved: MIPS: fw: Allow firmware to pass a empty env fw_getenv will use env entry to determine style of env, however it is legal for firmware to just pass a empty list. Check if first entry exist before running strchr to avoid null pointer dereference.


Metrics

NVD enrichment efforts reference publicly available information to associate vector strings. CVSS information contributed by other sources is also displayed.
CVSS 4.0 Severity and Vector Strings:

NIST CVSS score
NIST: NVD
N/A
NVD assessment not yet provided.

References to Advisories, Solutions, and Tools

By selecting these links, you will be leaving NIST webspace. We have provided these links to other web sites because they may have information that would be of interest to you. No inferences should be drawn on account of other sites being referenced, or not, from this page. There may be other web sites that are more appropriate for your purpose. NIST does not necessarily endorse the views expressed, or concur with the facts presented on these sites. Further, NIST does not endorse any commercial products that may be mentioned on these sites. Please address comments about this page to [email protected].

URL Source(s) Tag(s)
https://git.kernel.org/stable/c/0f91290774c798199ba4b8df93de5c3156b5163d kernel.org
https://git.kernel.org/stable/c/3ef93b7bd9e042db240843f24a80e14da38c6830 kernel.org
https://git.kernel.org/stable/c/47e61cadc7a5f3dffd42d2d6fda81be163f1ab82 kernel.org
https://git.kernel.org/stable/c/830181ddced5a05a711dc9da8043203b1f33a77e kernel.org
https://git.kernel.org/stable/c/a6b54af407873227caef6262e992f5422cdcb6ae kernel.org
https://git.kernel.org/stable/c/ad79828f133e98585ab2236cad04a55eb7141bbe kernel.org
https://git.kernel.org/stable/c/aeed787bbbbe1b842beec9a065a36c915226f704 kernel.org
https://git.kernel.org/stable/c/ee1809ed7bc456a72dc8410b475b73021a3a68d5 kernel.org
https://git.kernel.org/stable/c/f334b31625683418aaa2a335470eec950a95a254 kernel.org

Weakness Enumeration

CWE-ID CWE Name Source

Change History

1 change records found show changes

Quick Info

CVE Dictionary Entry:
CVE-2023-54279
NVD Published Date:
12/30/2025
NVD Last Modified:
12/30/2025
Source:
kernel.org