CVE-2023-54053

Source
https://cve.org/CVERecord?id=CVE-2023-54053
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2023-54053.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2023-54053
Downstream
Related
Published
2025-12-24T12:23:02.498Z
Modified
2026-03-12T03:28:46.133775Z
Summary
wifi: iwlwifi: pcie: fix possible NULL pointer dereference
Details

In the Linux kernel, the following vulnerability has been resolved:

wifi: iwlwifi: pcie: fix possible NULL pointer dereference

It is possible that iwlpciprobe() will fail and free the trans, then afterwards iwlpciremove() will be called and crash by trying to access trans which is already freed, fix it.

iwlwifi 0000:01:00.0: Detected crf-id 0xa5a5a5a2, cnv-id 0xa5a5a5a2 wfpm id 0xa5a5a5a2 iwlwifi 0000:01:00.0: Can't find a correct rfid for crf id 0x5a2 ... BUG: kernel NULL pointer dereference, address: 0000000000000028 ... RIP: 0010:iwlpciremove+0x12/0x30 [iwlwifi] pcideviceremove+0x3e/0xb0 devicereleasedriverinternal+0x103/0x1f0 driverdetach+0x4c/0x90 busremovedriver+0x5c/0xd0 driverunregister+0x31/0x50 pciunregisterdriver+0x40/0x90 iwlpciunregisterdriver+0x15/0x20 [iwlwifi] __exit_compat+0x9/0x98 [iwlwifi] _x64sysdeletemodule+0x147/0x260

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/54xxx/CVE-2023-54053.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
809805a820c6445f7a701ded24fdc6bbc841d1e4
Fixed
f6f2d16c77f936041b8ac495fceabded4ec6c83c
Fixed
0fc0d287c1e7dcb39a3b9bb0f8679cd68c2156c7
Fixed
7545f21eee1356ec98581125c4dba9c4c0cc7397
Fixed
0f9a1bcb94016d3a3c455a77b01f6bb06e15f6eb
Fixed
dcd23aa6cc0ded7950b60ce1badb80b84045c6c0
Fixed
b655b9a9f8467684cfa8906713d33b71ea8c8f54

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2023-54053.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
5.4.0
Fixed
5.4.244
Type
ECOSYSTEM
Events
Introduced
5.5.0
Fixed
5.10.181
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.113
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.30
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.3.4

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2023-54053.json"