CVE-2023-54197
published 2025-12-30CVE-2023-54197: In the Linux kernel, the following vulnerability has been resolved: Revert "Bluetooth: btsdio: fix use after free bug in btsdio_remove due to unfinished work"…
PriorityP422medium4.7
EPSS
0.20%
10.4th percentile
In the Linux kernel, the following vulnerability has been resolved:
Revert "Bluetooth: btsdio: fix use after free bug in btsdio_remove due to unfinished work"
This reverts commit 1e9ac114c4428fdb7ff4635b45d4f46017e8916f.
This patch introduces a possible null-ptr-def problem. Revert it. And the
fixed bug by this patch have resolved by commit 73f7b171b7c0 ("Bluetooth:
btsdio: fix use after free bug in btsdio_remove due to race condition").
Affected
30 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 6.1.37-1 (bookworm) | linux 6.1.37-1 (bookworm) |
| linux | linux | — | — |
| linux | linux | >= 1e9ac114c4428fdb7ff4635b45d4f46017e8916f < d8d7ce037d9a8f1f0714ece268c4c2c50845bbc3 | d8d7ce037d9a8f1f0714ece268c4c2c50845bbc3 |
| linux | linux | >= 1e9ac114c4428fdb7ff4635b45d4f46017e8916f < db2bf510bd5d57f064d9e1db395ed86a08320c54 | db2bf510bd5d57f064d9e1db395ed86a08320c54 |
| linux | linux | >= 4.14.312 < 4.14.315 | 4.14.315 |
| linux | linux | >= 4.19.280 < 4.19.283 | 4.19.283 |
| linux | linux | >= 5.10.177 < 5.10.180 | 5.10.180 |
| linux | linux | >= 5.15.105 < 5.15.111 | 5.15.111 |
| linux | linux | >= 5.4.240 < 5.4.243 | 5.4.243 |
| linux | linux | >= 6.1.22 < 6.1.28 | 6.1.28 |
| linux | linux | >= 6.2.9 < 6.2.15 | 6.2.15 |
| linux | linux | >= 8efae2112d910d8e5166dd0a836791b08721eef1 < a789192f366147a0fbb395650079906d1d04e0b9 | a789192f366147a0fbb395650079906d1d04e0b9 |
| linux | linux | >= 95eacef5692545f199fae4e52abfbfa273acb351 < 3b4ed52009723f7dfca7a8ca95163bfb441bfb76 | 3b4ed52009723f7dfca7a8ca95163bfb441bfb76 |
| linux | linux | >= a18fb433ceb56e0787546a9d77056dd0f215e762 < de0ffb5145c9f418ad76f00e58d4b91c680410b2 | de0ffb5145c9f418ad76f00e58d4b91c680410b2 |
| linux | linux | >= af4d48754d5517d33bac5e504ff1f1de0808e29e < 70a104588e3131415e559c06deb834ce259a285a | 70a104588e3131415e559c06deb834ce259a285a |
| linux | linux | >= c59c65a14e8f7d738429648833f3bb3f9df0513f < 8f83fa62614c282dd5d1211a0dd99c6a0a515b81 | 8f83fa62614c282dd5d1211a0dd99c6a0a515b81 |
| linux | linux | >= cbf8deacb7053ce3e3fed64b277c6c6989e65bba < 952030c914b5f2288609efe868537afcff7a3f51 | 952030c914b5f2288609efe868537afcff7a3f51 |
| linux | linux | >= da3d3fdfb4d523c5da30e35a8dd90e04f0fd8962 < 0837d10f6c37a47a0c73bccf1e39513613a2fcc2 | 0837d10f6c37a47a0c73bccf1e39513613a2fcc2 |
| linux | linux_kernel | >= 0 < 5.10.191-1 | 5.10.191-1 |
| linux | linux_kernel | >= 0 < 6.1.37-1 | 6.1.37-1 |
| linux | linux_kernel | >= 0 < 6.3.7-1 | 6.3.7-1 |
| linux | linux_kernel | >= 0 < 6.3.7-1 | 6.3.7-1 |
| linux | linux_kernel | >= 0 < 4.14.315 | 4.14.315 |
| linux | linux_kernel | >= 4.15.0 < 4.19.283 | 4.19.283 |
| linux | linux_kernel | >= 4.20.0 < 5.4.243 | 5.4.243 |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
kernel: Revert "Bluetooth: btsdio: fix use after free bug in btsdio_remove due to unfinished work"
vendor_redhat·2025-12-30·CVSS 4.7
CVE-2023-54197 [MEDIUM] CWE-476 kernel: Revert "Bluetooth: btsdio: fix use after free bug in btsdio_remove due to unfinished work"
kernel: Revert "Bluetooth: btsdio: fix use after free bug in btsdio_remove due to unfinished work"
In the Linux kernel, the following vulnerability has been resolved:
Revert "Bluetooth: btsdio: fix use after free bug in btsdio_remove due to unfinished work"
This reverts commit 1e9ac114c4428fdb7ff4635b45d4f46017e8916f.
This patch introduces a possible null-ptr-def problem. Revert it. And the
fixed bug by this patch have resolved by commit 73f7b171b7c0 ("Bluetooth:
btsdio: fix use after free bug in btsdio_remove due to race condition").
A regression was found in the Linux kernel's Bluetooth btsdio driver. A previous commit (1e9ac114c442) intended to fix a use-after-free bug introduced a potential NULL pointer dereference problem. This commit reverts that change since the original issue was
Debian
CVE-2023-54197: linux - In the Linux kernel, the following vulnerability has been resolved: Revert "Blu...
vendor_debian·2023
CVE-2023-54197 CVE-2023-54197: linux - In the Linux kernel, the following vulnerability has been resolved: Revert "Blu...
In the Linux kernel, the following vulnerability has been resolved: Revert "Bluetooth: btsdio: fix use after free bug in btsdio_remove due to unfinished work" This reverts commit 1e9ac114c4428fdb7ff4635b45d4f46017e8916f. This patch introduces a possible null-ptr-def problem. Revert it. And the fixed bug by this patch have resolved by commit 73f7b171b7c0 ("Bluetooth: btsdio: fix use after free bug in btsdio_remove due to race condition").
Scope: local
bookworm: resolved (fixed in 6.1.37-1)
bullseye: resolved (fixed in 5.10.191-1)
forky: resolved (fixed in 6.3.7-1)
sid: resolved (fixed in 6.3.7-1)
trixie: resolved (fixed in 6.3.7-1)
GHSA
GHSA-pmfg-qjh7-533r: In the Linux kernel, the following vulnerability has been resolved:
Revert "Bluetooth: btsdio: fix use after free bug in btsdio_remove due to unfinis
ghsa_unreviewed·2025-12-30
CVE-2023-54197 GHSA-pmfg-qjh7-533r: In the Linux kernel, the following vulnerability has been resolved:
Revert "Bluetooth: btsdio: fix use after free bug in btsdio_remove due to unfinis
In the Linux kernel, the following vulnerability has been resolved:
Revert "Bluetooth: btsdio: fix use after free bug in btsdio_remove due to unfinished work"
This reverts commit 1e9ac114c4428fdb7ff4635b45d4f46017e8916f.
This patch introduces a possible null-ptr-def problem. Revert it. And the
fixed bug by this patch have resolved by commit 73f7b171b7c0 ("Bluetooth:
btsdio: fix use after free bug in btsdio_remove due to race condition").
OSV
Revert "Bluetooth: btsdio: fix use after free bug in btsdio_remove due to unfinished work"
osv·2025-12-30
CVE-2023-54197 Revert "Bluetooth: btsdio: fix use after free bug in btsdio_remove due to unfinished work"
Revert "Bluetooth: btsdio: fix use after free bug in btsdio_remove due to unfinished work"
In the Linux kernel, the following vulnerability has been resolved:
Revert "Bluetooth: btsdio: fix use after free bug in btsdio_remove due to unfinished work"
This reverts commit 1e9ac114c4428fdb7ff4635b45d4f46017e8916f.
This patch introduces a possible null-ptr-def problem. Revert it. And the
fixed bug by this patch have resolved by commit 73f7b171b7c0 ("Bluetooth:
btsdio: fix use after free bug in btsdio_remove due to race condition").
OSV
CVE-2023-54197: In the Linux kernel, the following vulnerability has been resolved: Revert "Bluetooth: btsdio: fix use after free bug in btsdio_remove due to unfinish
osv·2025-12-30
CVE-2023-54197 CVE-2023-54197: In the Linux kernel, the following vulnerability has been resolved: Revert "Bluetooth: btsdio: fix use after free bug in btsdio_remove due to unfinish
In the Linux kernel, the following vulnerability has been resolved: Revert "Bluetooth: btsdio: fix use after free bug in btsdio_remove due to unfinished work" This reverts commit 1e9ac114c4428fdb7ff4635b45d4f46017e8916f. This patch introduces a possible null-ptr-def problem. Revert it. And the fixed bug by this patch have resolved by commit 73f7b171b7c0 ("Bluetooth: btsdio: fix use after free bug in btsdio_remove due to race condition").
No detection rules found.
No public exploits indexed.
Wiz
CVE-2023-54197 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz
CVE-2023-54197 CVE-2023-54197 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2023-54197 :
Linux Kernel vulnerability analysis and mitigation
In the Linux kernel, the following vulnerability has been resolved:
Revert "Bluetooth: btsdio: fix use after free bug in btsdio_remove due to unfinished work"
This reverts commit 1e9ac114c4428fdb7ff4635b45d4f46017e8916f.
This patch introduces a possible null-ptr-def problem. Revert it. And the
fixed bug by this patch have resolved by commit 73f7b171b7c0 ("Bluetooth:
btsdio: fix use after free bug in btsdio_remove due to race condition").
Source : NVD
Published December 30, 2025
CNA Score N/A
Affected Technologies
Linux Kernel
Linux Debian
Has Public Exploit No
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 15.2
Exploitation Probability
Bugzilla
CVE-2023-54197 kernel: Revert "Bluetooth: btsdio: fix use after free bug in btsdio_remove due to unfinished work"
bugzilla·2025-12-30
CVE-2023-54197 [MEDIUM] CVE-2023-54197 kernel: Revert "Bluetooth: btsdio: fix use after free bug in btsdio_remove due to unfinished work"
CVE-2023-54197 kernel: Revert "Bluetooth: btsdio: fix use after free bug in btsdio_remove due to unfinished work"
In the Linux kernel, the following vulnerability has been resolved:
Revert "Bluetooth: btsdio: fix use after free bug in btsdio_remove due to unfinished work"
This reverts commit 1e9ac114c4428fdb7ff4635b45d4f46017e8916f.
This patch introduces a possible null-ptr-def problem. Revert it. And the
fixed bug by this patch have resolved by commit 73f7b171b7c0 ("Bluetooth:
btsdio: fix use after free bug in btsdio_remove due to race condition").
Discussion:
Upstream advisory:
https://lore.kernel.org/linux-cve-announce/2025123029-CVE-2023-54197-aeec@gregkh/T
https://git.kernel.org/stable/c/0837d10f6c37a47a0c73bccf1e39513613a2fcc2https://git.kernel.org/stable/c/3b4ed52009723f7dfca7a8ca95163bfb441bfb76https://git.kernel.org/stable/c/70a104588e3131415e559c06deb834ce259a285ahttps://git.kernel.org/stable/c/8f83fa62614c282dd5d1211a0dd99c6a0a515b81https://git.kernel.org/stable/c/952030c914b5f2288609efe868537afcff7a3f51https://git.kernel.org/stable/c/a789192f366147a0fbb395650079906d1d04e0b9https://git.kernel.org/stable/c/d8d7ce037d9a8f1f0714ece268c4c2c50845bbc3https://git.kernel.org/stable/c/db2bf510bd5d57f064d9e1db395ed86a08320c54https://git.kernel.org/stable/c/de0ffb5145c9f418ad76f00e58d4b91c680410b2
2025-12-30
Published