VYPR
Medium severity5.5NVD Advisory· Published Mar 27, 2025· Updated Jun 17, 2026

CVE-2023-53017

CVE-2023-53017

Description

In the Linux kernel, the following vulnerability has been resolved:

Bluetooth: hci_sync: fix memory leak in hci_update_adv_data()

When hci_cmd_sync_queue() failed in hci_update_adv_data(), inst_ptr is not freed, which will cause memory leak, convert to use ERR_PTR/PTR_ERR to pass the instance to callback so no memory needs to be allocated.

Affected products

8
  • Linux/Kernelllm-fuzzy7 versions
    (expand)+ 6 more
    • (no CPE)
    • cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*range: >=6.0,<6.1.9
    • cpe:2.3:o:linux:linux_kernel:6.2:rc1:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:6.2:rc2:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:6.2:rc3:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:6.2:rc4:*:*:*:*:*:*
    • (no CPE)range: 6.1
  • osv-coords
    Range: >= 6.1.0, < 6.1.9

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.