PT-2025-49718 · Linux+1 · Linux Kernel+1

CVE-2023-53827

·

Published

2023-04-10

·

Updated

2026-07-01

CVSS v3.1

8.8

High

VectorAV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A flaw exists in the Linux kernel's Bluetooth L2CAP implementation, specifically within the l2cap disconnect req and l2cap disconnect rsp functions. This issue involves a use-after-free condition, where memory is accessed after it has been freed, potentially leading to system instability or other undefined behavior. The fix involves using l2cap chan hold unless zero to prevent referencing a channel that is in the process of being destroyed.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Race Condition

Use After Free

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-12315
CVE-2023-53827
RHSA-2026:3360
RHSA-2026:3388
SUSE-SU-2026:0263-1
SUSE-SU-2026:0317-1
SUSE-SU-2026:0411-1
SUSE-SU-2026:0617-1
SUSE-SU-2026:0928-1
SUSE-SU-2026:0961-1
SUSE-SU-2026:1078-1

Affected Products

Linux Kernel
Red Os