CVE-2023-54197NULL Pointer Dereference in Linux

Severity
4.7MEDIUM
No vector
EPSS
0.0%
top 84.94%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 30

Description

In the Linux kernel, the following vulnerability has been resolved: Revert "Bluetooth: btsdio: fix use after free bug in btsdio_remove due to unfinished work" This reverts commit 1e9ac114c4428fdb7ff4635b45d4f46017e8916f. This patch introduces a possible null-ptr-def problem. Revert it. And the fixed bug by this patch have resolved by commit 73f7b171b7c0 ("Bluetooth: btsdio: fix use after free bug in btsdio_remove due to race condition").

Affected Packages4 packages

Linuxlinux/linux_kernel4.15.04.19.283+7
Debianlinux/linux_kernel< 5.10.191-1+3
CVEListV5linux/linux95eacef5692545f199fae4e52abfbfa273acb3513b4ed52009723f7dfca7a8ca95163bfb441bfb76+9
debiandebian/linux< linux 6.1.37-1 (bookworm)

🔴Vulnerability Details

3
GHSA
GHSA-pmfg-qjh7-533r: In the Linux kernel, the following vulnerability has been resolved: Revert "Bluetooth: btsdio: fix use after free bug in btsdio_remove due to unfinis2025-12-30
OSV
Revert "Bluetooth: btsdio: fix use after free bug in btsdio_remove due to unfinished work"2025-12-30
OSV
CVE-2023-54197: In the Linux kernel, the following vulnerability has been resolved: Revert "Bluetooth: btsdio: fix use after free bug in btsdio_remove due to unfinish2025-12-30

📋Vendor Advisories

2
Red Hat
kernel: Revert "Bluetooth: btsdio: fix use after free bug in btsdio_remove due to unfinished work"2025-12-30
Debian
CVE-2023-54197: linux - In the Linux kernel, the following vulnerability has been resolved: Revert "Blu...2023

🕵️Threat Intelligence

1
Wiz
CVE-2023-54197 Impact, Exploitability, and Mitigation Steps | Wiz