CVE-2023-53827: Linux
High severity, CVSS 8.8. EPSS: 0.4% chance of exploitation in the next 30 days.
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: Fix use-after-free in l2cap_disconnect_{req,rsp} Similar to commit d0be8347c623 ("Bluetooth: L2CAP: Fix use-after-free caused by l2cap_chan_put"), just use l2cap_chan_hold_unless_zero to prevent referencing a channel that is about to be destroyed.
Affected products
- Linux Linux: from 3.5, before 4.14.313 (fixed in 4.14.313); from 4.15, before 4.19.281 (fixed in 4.19.281); from 4.20, before 5.4.241 (fixed in 5.4.241); from 5.5, before 5.10.178 (fixed in 5.10.178); from 5.11, before 5.15.108 (fixed in 5.15.108); from 5.16, before 6.1.25 (fixed in 6.1.25); …
Published 2025-12-09. Last modified 2026-08-04.