Home

Description

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: Fix potential use-after-free when clear keys Similar to commit c5d2b6fa26b5 ("Bluetooth: Fix use-after-free in hci_remove_ltk/hci_remove_irk"). We can not access k after kfree_rcu() call.

PUBLISHED Reserved 2025-09-17 | Published 2025-09-18 | Updated 2025-09-18 | Assigner Linux

Product status

Default status
unaffected

d7d41682efc25d58b5bd8b80e85e3c9ce586635c (git) before e87da6a0ac6e631454e7da53a76aa9fe44aaa5dd
affected

d7d41682efc25d58b5bd8b80e85e3c9ce586635c (git) before 942d8cefb022f384d5424f8b90c7878f3f93726f
affected

d7d41682efc25d58b5bd8b80e85e3c9ce586635c (git) before 94617b736c25091b60e514e2e7aeafcbbee6b700
affected

d7d41682efc25d58b5bd8b80e85e3c9ce586635c (git) before da19f35868dfbecfff4f81166c054d2656cb1be4
affected

d7d41682efc25d58b5bd8b80e85e3c9ce586635c (git) before 35cc42f04bc49f0656f6840cb7451b3df6049649
affected

d7d41682efc25d58b5bd8b80e85e3c9ce586635c (git) before 3673952cf0c6cf81b06c66a0b788abeeb02ff3ae
affected

Default status
affected

5.7
affected

Any version before 5.7
unaffected

5.10.195 (semver)
unaffected

5.15.132 (semver)
unaffected

6.1.53 (semver)
unaffected

6.4.16 (semver)
unaffected

6.5.3 (semver)
unaffected

6.6 (original_commit_for_fix)
unaffected

References

git.kernel.org/...c/e87da6a0ac6e631454e7da53a76aa9fe44aaa5dd

git.kernel.org/...c/942d8cefb022f384d5424f8b90c7878f3f93726f

git.kernel.org/...c/94617b736c25091b60e514e2e7aeafcbbee6b700

git.kernel.org/...c/da19f35868dfbecfff4f81166c054d2656cb1be4

git.kernel.org/...c/35cc42f04bc49f0656f6840cb7451b3df6049649

git.kernel.org/...c/3673952cf0c6cf81b06c66a0b788abeeb02ff3ae

cve.org (CVE-2023-53386)

nvd.nist.gov (CVE-2023-53386)

Download JSON