CVE-2023-31083
Summary
| CVE | CVE-2023-31083 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2023-04-24 06:15:00 UTC |
| Updated | 2023-11-07 04:14:00 UTC |
| Description | An issue was discovered in drivers/bluetooth/hci_ldisc.c in the Linux kernel 6.2. In hci_uart_tty_ioctl, there is a race condition between HCIUARTSETPROTO and HCIUARTGETPROTO. HCI_UART_PROTO_SET is set before hu->proto is set. A NULL pointer dereference may occur. |
Risk And Classification
Problem Types: CWE-362 | CWE-476
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Operating System | Linux | Linux Kernel | 6.2 | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| April 2023 Linux Kernel 6.2 Vulnerabilities in NetApp Products | NetApp Product Security | CONFIRM | security.netapp.com | |
| BUG: general protection fault in hci_uart_tty_ioctl - Yu Hao | lore.kernel.org | ||
| BUG: general protection fault in hci_uart_tty_ioctl - Yu Hao | MISC | lore.kernel.org | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 199842 Ubuntu Security Notification for Linux kernel Vulnerabilities (USN-6440-1)
- 199843 Ubuntu Security Notification for Linux kernel Vulnerabilities (USN-6439-1)
- 199849 Ubuntu Security Notification for Linux kernel (Azure) Vulnerabilities (USN-6440-2)
- 199855 Ubuntu Security Notification for Linux kernel (AWS) Vulnerabilities (USN-6439-2)
- 199864 Ubuntu Security Notification for Linux kernel (HWE) Vulnerabilities (USN-6440-3)
- 199878 Ubuntu Security Notification for Linux kernel Vulnerabilities (USN-6465-1)
- 199879 Ubuntu Security Notification for Linux kernel Vulnerabilities (USN-6464-1)
- 199882 Ubuntu Security Notification for Linux kernel Vulnerabilities (USN-6462-1)
- 199883 Ubuntu Security Notification for Linux kernel (NVIDIA) Vulnerabilities (USN-6466-1)
- 199886 Ubuntu Security Notification for Linux kernel (Raspberry Pi) Vulnerabilities (USN-6465-2)
- 199903 Ubuntu Security Notification for Linux kernel (GKE) Vulnerabilities (USN-6465-3)
- 199919 Ubuntu Security Notification for Linux kernel (IoT) Vulnerabilities (USN-6462-2)
- 199955 Ubuntu Security Notification for Linux kernel (Intel IoTG) Vulnerabilities (USN-6516-1)
- 199957 Ubuntu Security Notification for Linux kernel (StarFive) Vulnerabilities (USN-6520-1)
- 379043 Alibaba Cloud Linux Security Update for cloud-kernel (ALINUX3-SA-2023:0136)
- 379435 Alibaba Cloud Linux Security Update for cloud-kernel (ALINUX2-SA-2024:0012)