cbcvebase.
CVE-2023-54249
published 2025-12-30

CVE-2023-54249: In the Linux kernel, the following vulnerability has been resolved: bus: mhi: ep: Only send -ENOTCONN status if client driver is available For the STOP and…

PriorityP421medium5.3
EPSS
0.17%
6.9th percentile
In the Linux kernel, the following vulnerability has been resolved: bus: mhi: ep: Only send -ENOTCONN status if client driver is available For the STOP and RESET commands, only send the channel disconnect status -ENOTCONN if client driver is available. Otherwise, it will result in null pointer dereference.

Affected

10 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.20-1 (bookworm)linux 6.1.20-1 (bookworm)
linuxlinux
linuxlinux>= e827569062a804c67b51930ce83a4cb886113cb7 < 353aea15d6edbd4e69e039356a1bd3e641f7d952353aea15d6edbd4e69e039356a1bd3e641f7d952
linuxlinux>= e827569062a804c67b51930ce83a4cb886113cb7 < 860ad591056d7e4dc30bc130b6ec6e6d70930c85860ad591056d7e4dc30bc130b6ec6e6d70930c85
linuxlinux>= e827569062a804c67b51930ce83a4cb886113cb7 < e6cebcc27519dcf1652e604c73b9fd4f416987c0e6cebcc27519dcf1652e604c73b9fd4f416987c0
linuxlinux_kernel>= 0 < 6.1.20-16.1.20-1
linuxlinux_kernel>= 0 < 6.1.20-16.1.20-1
linuxlinux_kernel>= 0 < 6.1.20-16.1.20-1
linuxlinux_kernel>= 5.19.0 < 6.1.166.1.16
linuxlinux_kernel>= 6.2.0 < 6.2.36.2.3
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.