CVE-2023-54100

Linux Kernel 5.7.0-5.10.180 5.11.0-5.15.112 5.16.0-6.1.29 6.2.0-6.2.16 6.3.0-6.3.3 - Use-After-Free in qedi_remove

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: scsi: qedi: Fix use after free bug in qedi_remove() In qedi_probe() we call __qedi_probe() which initializes &qedi->recovery_work with qedi_recovery_handler() and &qedi->board_disable_work with qedi_board_disable_work(). When qedi_schedule_recovery_handler() is called, schedule_delayed_work() will finally start the work. In qedi_remove(), which is called to remove the driver, the following sequence may be observed: Fix this by finishing the work before cleanup in qedi_remove(). CPU0 CPU1 |qedi_recovery_handler qedi_remove | __qedi_remove | iscsi_host_free | scsi_host_put | //free shost | |iscsi_host_for_each_session |//use qedi->shost Cancel recovery_work and board_disable_work in __qedi_remove().

Scores

EPSS 0.0019
EPSS Percentile 8.6%

Details

Status published
Products (19)
linux/Kernel 5.11.0 - 5.15.112linux
linux/Kernel 5.16.0 - 6.1.29linux
linux/Kernel 5.7.0 - 5.10.180linux
linux/Kernel 6.2.0 - 6.2.16linux
linux/Kernel 6.3.0 - 6.3.3linux
Linux/Linux < 5.7
Linux/Linux 4b1068f5d74b6cc92319bd7eba40809b1222e73f - 124027cd1a624ce0347adcd59241a9966a726b22
Linux/Linux 4b1068f5d74b6cc92319bd7eba40809b1222e73f - 3738a230831e861503119ee2691c4a7dc56ed60a
Linux/Linux 4b1068f5d74b6cc92319bd7eba40809b1222e73f - 5e756a59cee6a8a79b9059c5bdf0ecbf5bb8d151
Linux/Linux 4b1068f5d74b6cc92319bd7eba40809b1222e73f - 89f6023fc321c958a0fb11f143a6eb4544ae3940
... and 9 more
Published Dec 24, 2025
Tracked Since Feb 18, 2026