Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Workaround
This flaw can be mitigated by preventing the affected Generic Bluetooth SDIO driver kernel module from loading during the boot time. Ensure the module is added into the blacklist file. ~~~ Refer: How do I blacklist a kernel module to prevent it from loading automatically? https://access.redhat.com/solutions/41278 ~~~
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-3403-1 | linux security update |
Debian DLA |
DLA-3404-1 | linux-5.10 security update |
Debian DLA |
DLA-3710-1 | linux security update |
Debian DSA |
DSA-5492-1 | linux security update |
Ubuntu USN |
USN-6033-1 | Linux kernel (OEM) vulnerabilities |
Ubuntu USN |
USN-6175-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-6186-1 | Linux kernel vulnerabilities |
Thu, 01 Oct 2026 12:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Netapp hci Baseboard Management Controller
|
|
| CPEs | cpe:2.3:a:netapp:hci_baseboard_management_controller:h300s:*:*:*:*:*:*:* cpe:2.3:a:netapp:hci_baseboard_management_controller:h410c:*:*:*:*:*:*:* cpe:2.3:a:netapp:hci_baseboard_management_controller:h410s:*:*:*:*:*:*:* cpe:2.3:a:netapp:hci_baseboard_management_controller:h500s:*:*:*:*:*:*:* cpe:2.3:a:netapp:hci_baseboard_management_controller:h700s:*:*:*:*:*:*:* cpe:2.3:o:debian:debian_linux:-:*:*:*:*:*:*:* |
|
| Vendors & Products |
Netapp hci Baseboard Management Controller
|
|
| Metrics |
ssvc
|
Thu, 01 Oct 2026 11:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A use-after-free flaw was found in btsdio_remove in drivers\bluetooth\btsdio.c in the Linux Kernel. In this flaw, a call to btsdio_remove with an unfinished job, may cause a race problem leading to a UAF on hdev devices. | A use-after-free flaw was found in btsdio_remove in drivers\bluetooth\btsdio.c in the Linux Kernel. A call to btsdio_remove with an unfinished job may cause a race problem which leads to a UAF on hdev devices. |
| Title | kernel: Use after free bug in btsdio_remove due to race condition | Kernel: use after free bug in btsdio_remove due to race condition |
| CPEs | cpe:/a:redhat:enterprise_linux:8::crb cpe:/a:redhat:enterprise_linux:8::realtime cpe:/a:redhat:enterprise_linux:9::appstream cpe:/a:redhat:enterprise_linux:9::crb cpe:/a:redhat:enterprise_linux:9::nfv cpe:/a:redhat:enterprise_linux:9::realtime cpe:/a:redhat:rhel_eus:8.6::crb cpe:/a:redhat:rhel_eus:8.8::crb cpe:/o:redhat:enterprise_linux:6 cpe:/o:redhat:enterprise_linux:7 cpe:/o:redhat:enterprise_linux:8::baseos cpe:/o:redhat:enterprise_linux:9::baseos cpe:/o:redhat:rhel_eus:8.6::baseos cpe:/o:redhat:rhel_eus:8.8::baseos |
|
| References |
|
|
Subscriptions
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2026-10-01T10:58:00.904Z
Reserved: 2023-04-11T00:00:00.000Z
Link: CVE-2023-1989
Updated: 2024-08-02T06:05:27.122Z
Status : Modified
Published: 2023-04-11T21:15:15.503
Modified: 2026-10-01T11:17:14.277
Link: CVE-2023-1989
OpenCVE Enrichment
No data.
-
CWE-416
Use After Free
Debian DLA
Debian DSA
Ubuntu USN