---
cve: "CVE-2023-31083"
severity: "LOW"
cvss: 3.1
epss: "33%"
vendor: "n/a"
kev: false
exploited: false
published: "2023-04-24 06:15:07"
tags: [cve, security, low]
source: tsecurity.de CVE-Dossier
exported: "2026-09-18T07:52:30+02:00"
---

# CVE-2023-31083

> 3.1 LOW

## Beschreibung

An issue was discovered in drivers/bluetooth/hci_ldisc.c in the Linux kernel 6.2. In hci_uart_tty_ioctl, there is a race condition between HCIUARTSETPROTO and HCIUARTGETPROTO. HCI_UART_PROTO_SET is set before hu->proto is set. A NULL pointer dereference may occur.

## Referenzen

- <https://lore.kernel.org/all/CA+UBctC3p49aTgzbVgkSZ2+TQcqq4fPDO7yZitFT5uBPDeCO2g%40mail.gmail.com/>
- <https://security.netapp.com/advisory/ntap-20230929-0003/>
- <https://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=9c33663af9ad115f90c076a1828129a3fbadea98>
- <https://bugzilla.suse.com/show_bug.cgi?id=1210780>
- <https://lists.debian.org/debian-lts-announce/2024/10/msg00003.html>
- <https://lists.debian.org/debian-lts-announce/2025/01/msg00001.html>

---
_Exportiert aus dem [tsecurity.de CVE-Dossier](https://tsecurity.de/cve?cve=CVE-2023-31083) · Datenquellen: EUVD (ENISA), NVD, OSV, CISA KEV, FIRST EPSS, Exploit-DB, BSI BITS_
