CVE-2023-53828
Published: Dec 9, 2025
Modified: May 11, 2026
Description
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_sync: Avoid use-after-free in dbg for hci_add_adv_monitor() KSAN reports use-after-free in hci_add_adv_monitor(). While adding an adv monitor, hci_add_adv_monitor() calls -> msft_add_monitor_pattern() calls -> msft_add_monitor_sync() calls -> msft_le_monitor_advertisement_cb() calls in an error case -> hci_free_adv_monitor() which frees the *moniter. This is referenced by bt_dev_dbg() in hci_add_adv_monitor(). Fix the bt_dev_dbg() by using handle instead of monitor->handle.
| Vendor | Product | Versions |
|---|---|---|
Linux | Linux | affected b747a83690c8f53bc7a3f75899415c699b2c51aa - < 81d8e9f59df63b8358751c1ffed9f1cf5c796909affected b747a83690c8f53bc7a3f75899415c699b2c51aa - < aafda69d4807f5edf3558c9534be9b911774e63aaffected b747a83690c8f53bc7a3f75899415c699b2c51aa - < 8d66f7ced51cb924bc90278d6a0a26a52877271aaffected b747a83690c8f53bc7a3f75899415c699b2c51aa - < a2bcd2b63271a93a695fabbfbf459c603d956d48 |
Linux | Linux | affected 6.0unaffected 0 - < 6.0unaffected 6.1.53 - <= 6.1.*unaffected 6.4.16 - <= 6.4.*unaffected 6.5.3 - <= 6.5.*+1 more versions |
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now