CVE-2023-54244

Linux Kernel - Use-After-Free in ACPI EC Custom Query Handler Removal

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: ACPI: EC: Fix oops when removing custom query handlers When removing custom query handlers, the handler might still be used inside the EC query workqueue, causing a kernel oops if the module holding the callback function was already unloaded. Fix this by flushing the EC query workqueue when removing custom query handlers. Tested on a Acer Travelmate 4002WLMi

Scores

EPSS 0.0018
EPSS Percentile 8.3%

Details

Status published
Products (27)
linux/Kernel 2.6.33 - 4.14.316linux
linux/Kernel 4.15.0 - 4.19.284linux
linux/Kernel 4.20.0 - 5.4.244linux
linux/Kernel 5.11.0 - 5.15.113linux
linux/Kernel 5.16.0 - 6.1.30linux
linux/Kernel 5.5.0 - 5.10.181linux
linux/Kernel 6.2.0 - 6.3.4linux
Linux/Linux < 2.6.33
Linux/Linux 1ff7b99e4983d9e93d25e98ba1ce303ad4e4909e
Linux/Linux 2.6.32.6 - 2.6.33
... and 17 more
Published Dec 30, 2025
Tracked Since Feb 18, 2026