CVE-2023-53297
published 2025-09-16CVE-2023-53297: In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: fix "bad unlock balance" in l2cap_disconnect_rsp conn->chan_lock isn't…
PriorityP418medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.20%
10.3th percentile
In the Linux kernel, the following vulnerability has been resolved:
Bluetooth: L2CAP: fix "bad unlock balance" in l2cap_disconnect_rsp
conn->chan_lock isn't acquired before l2cap_get_chan_by_scid,
if l2cap_get_chan_by_scid returns NULL, then 'bad unlock balance'
is triggered.
Affected
29 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 6.1.37-1 (bookworm) | linux 6.1.37-1 (bookworm) |
| linux | linux | — | — |
| linux | linux | — | — |
| linux | linux | >= 1351551aa9058e07a20a27a158270cf84fcde621 < 6a27762340ad08643de3bc17fe1646ea489ca2e2 | 6a27762340ad08643de3bc17fe1646ea489ca2e2 |
| linux | linux | >= 348d446762e7c70778df8bafbdf3fa0df2123f58 < fd269a0435f8e9943b7a57c5a59688848d42d449 | fd269a0435f8e9943b7a57c5a59688848d42d449 |
| linux | linux | >= 4.14.313 < 4.14.316 | 4.14.316 |
| linux | linux | >= 4.19.281 < 4.19.284 | 4.19.284 |
| linux | linux | >= 5.10.178 < 5.10.181 | 5.10.181 |
| linux | linux | >= 5.15.108 < 5.15.113 | 5.15.113 |
| linux | linux | >= 5.4.241 < 5.4.244 | 5.4.244 |
| linux | linux | >= 6.1.25 < 6.1.30 | 6.1.30 |
| linux | linux | >= 6.2.12 < 6.3 | 6.3 |
| linux | linux | >= a2a9339e1c9deb7e1e079e12e27a0265aea8421a < 5134556c9be582793f30695c09d18a26fe1ff2d7 | 5134556c9be582793f30695c09d18a26fe1ff2d7 |
| linux | linux | >= a2a9339e1c9deb7e1e079e12e27a0265aea8421a < 25e97f7b1866e6b8503be349eeea44bb52d661ce | 25e97f7b1866e6b8503be349eeea44bb52d661ce |
| linux | linux | >= ac6725a634f7e8c0330610a8527f20c730b61115 < 116b9c002c894097adc2b8684db2d1da4229ed46 | 116b9c002c894097adc2b8684db2d1da4229ed46 |
| linux | linux | >= c02421992505c95c7f3c9ad59ee35e22eac60988 < 2112c4c47d36bc5aba3ddeb9afedce6ae6a67e7d | 2112c4c47d36bc5aba3ddeb9afedce6ae6a67e7d |
| linux | linux | >= d9ba36c22a7bb09d6bac4cc2f243eff05da53f43 < 55410a9144c76ecda126e6cdec556dfcd8f343b2 | 55410a9144c76ecda126e6cdec556dfcd8f343b2 |
| linux | linux | >= f2d38e77aa5f3effc143e7dd24da8acf02925958 < 5f352a56f0e607e6ff539cbf12156bfd8af232be | 5f352a56f0e607e6ff539cbf12156bfd8af232be |
| linux | linux_kernel | < 4.14.316 | 4.14.316 |
| linux | linux_kernel | >= 0 < 5.10.191-1 | 5.10.191-1 |
| linux | linux_kernel | >= 0 < 6.1.37-1 | 6.1.37-1 |
| linux | linux_kernel | >= 0 < 6.3.7-1 | 6.3.7-1 |
| linux | linux_kernel | >= 0 < 6.3.7-1 | 6.3.7-1 |
| linux | linux_kernel | >= 4.15 < 4.19.284 | 4.19.284 |
| linux | linux_kernel | >= 4.20 < 5.4.244 | 5.4.244 |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
kernel: Bluetooth: L2CAP: fix "bad unlock balance" in l2cap_disconnect_rsp
vendor_redhat·2025-09-16·CVSS 5.5
CVE-2023-53297 [MEDIUM] CWE-832 kernel: Bluetooth: L2CAP: fix "bad unlock balance" in l2cap_disconnect_rsp
kernel: Bluetooth: L2CAP: fix "bad unlock balance" in l2cap_disconnect_rsp
In the Linux kernel, the following vulnerability has been resolved:
Bluetooth: L2CAP: fix "bad unlock balance" in l2cap_disconnect_rsp
conn->chan_lock isn't acquired before l2cap_get_chan_by_scid,
if l2cap_get_chan_by_scid returns NULL, then 'bad unlock balance'
is triggered.
Package: kernel (Red Hat Enterprise Linux 10) - Not affected
Package: kernel (Red Hat Enterprise Linux 6) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 9) - Affected
Debian
CVE-2023-53297: linux - In the Linux kernel, the following vulnerability has been resolved: Bluetooth: ...
vendor_debian·2023·CVSS 5.5
CVE-2023-53297 [MEDIUM] CVE-2023-53297: linux - In the Linux kernel, the following vulnerability has been resolved: Bluetooth: ...
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: fix "bad unlock balance" in l2cap_disconnect_rsp conn->chan_lock isn't acquired before l2cap_get_chan_by_scid, if l2cap_get_chan_by_scid returns NULL, then 'bad unlock balance' is triggered.
Scope: local
bookworm: resolved (fixed in 6.1.37-1)
bullseye: resolved (fixed in 5.10.191-1)
forky: resolved (fixed in 6.3.7-1)
sid: resolved (fixed in 6.3.7-1)
trixie: resolved (fixed in 6.3.7-1)
GHSA
GHSA-r9g9-q5xh-mm5x: In the Linux kernel, the following vulnerability has been resolved:
Bluetooth: L2CAP: fix "bad unlock balance" in l2cap_disconnect_rsp
conn->chan_lo
ghsa_unreviewed·2025-09-16
CVE-2023-53297 [MEDIUM] GHSA-r9g9-q5xh-mm5x: In the Linux kernel, the following vulnerability has been resolved:
Bluetooth: L2CAP: fix "bad unlock balance" in l2cap_disconnect_rsp
conn->chan_lo
In the Linux kernel, the following vulnerability has been resolved:
Bluetooth: L2CAP: fix "bad unlock balance" in l2cap_disconnect_rsp
conn->chan_lock isn't acquired before l2cap_get_chan_by_scid,
if l2cap_get_chan_by_scid returns NULL, then 'bad unlock balance'
is triggered.
OSV
CVE-2023-53297: In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: fix "bad unlock balance" in l2cap_disconnect_rsp conn->chan_lock
osv·2025-09-16·CVSS 5.5
CVE-2023-53297 [MEDIUM] CVE-2023-53297: In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: fix "bad unlock balance" in l2cap_disconnect_rsp conn->chan_lock
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: fix "bad unlock balance" in l2cap_disconnect_rsp conn->chan_lock isn't acquired before l2cap_get_chan_by_scid, if l2cap_get_chan_by_scid returns NULL, then 'bad unlock balance' is triggered.
No detection rules found.
No public exploits indexed.
https://git.kernel.org/stable/c/116b9c002c894097adc2b8684db2d1da4229ed46https://git.kernel.org/stable/c/2112c4c47d36bc5aba3ddeb9afedce6ae6a67e7dhttps://git.kernel.org/stable/c/25e97f7b1866e6b8503be349eeea44bb52d661cehttps://git.kernel.org/stable/c/5134556c9be582793f30695c09d18a26fe1ff2d7https://git.kernel.org/stable/c/55410a9144c76ecda126e6cdec556dfcd8f343b2https://git.kernel.org/stable/c/5f352a56f0e607e6ff539cbf12156bfd8af232behttps://git.kernel.org/stable/c/6a27762340ad08643de3bc17fe1646ea489ca2e2https://git.kernel.org/stable/c/fd269a0435f8e9943b7a57c5a59688848d42d449
2025-09-16
Published