{"schema_version":"1.9.0","id":"CVE-2023-54079","published":"2025-12-24T13:06:11.956Z","modified":"2026-08-12T03:51:30.750517198Z","related":["SUSE-SU-2026:0263-1","SUSE-SU-2026:0317-1","SUSE-SU-2026:0411-1","SUSE-SU-2026:0617-1"],"summary":"power: supply: bq27xxx: Fix poll_interval handling and races on remove","details":"In the Linux kernel, the following vulnerability has been resolved:\n\npower: supply: bq27xxx: Fix poll_interval handling and races on remove\n\nBefore this patch bq27xxx_battery_teardown() was setting poll_interval = 0\nto avoid bq27xxx_battery_update() requeuing the delayed_work item.\n\nThere are 2 problems with this:\n\n1. If the driver is unbound through sysfs, rather then the module being\n   rmmod-ed, this changes poll_interval unexpectedly\n\n2. This is racy, after it being set poll_interval could be changed\n   before bq27xxx_battery_update() checks it through\n   /sys/module/bq27xxx_battery/parameters/poll_interval\n\nFix this by added a removed attribute to struct bq27xxx_device_info and\nusing that instead of setting poll_interval to 0.\n\nThere also is another poll_interval related race on remove(), writing\n/sys/module/bq27xxx_battery/parameters/poll_interval will requeue\nthe delayed_work item for all devices on the bq27xxx_battery_devices\nlist and the device being removed was only removed from that list\nafter cancelling the delayed_work item.\n\nFix this by moving the removal from the bq27xxx_battery_devices list\nto before cancelling the delayed_work item.","affected":[{"ranges":[{"type":"GIT","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","events":[{"introduced":"8cfaaa811894a3ae2d7360a15a6cfccff3ebc7db"},{"fixed":"4c9615474fb0a41cfad658d78db3c9ec70912969"},{"fixed":"465d919151a1e8d40daf366b868914f59d073211"},{"fixed":"0c5f4cec759679c290720fbcf6bb81768e21c95b"},{"fixed":"e85757da9091998276ff21a13915ac25229cc232"},{"fixed":"e98e5bebfcafc75a7b41192a607dfea5c1268afa"},{"fixed":"d952a1eaafcc5f0351caad5dbe9b5b3300d1d529"},{"fixed":"b12faeca0e819ea09051a705fef9df7ea7e9e18c"},{"fixed":"c00bc80462afc7963f449d7f21d896d2f629cacc"}]}],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-54079.json"}},{"package":{"name":"Kernel","ecosystem":"Linux"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"3.3.0"},{"fixed":"4.14.316"}]},{"type":"ECOSYSTEM","events":[{"introduced":"4.15.0"},{"fixed":"4.19.284"}]},{"type":"ECOSYSTEM","events":[{"introduced":"4.20.0"},{"fixed":"5.4.244"}]},{"type":"ECOSYSTEM","events":[{"introduced":"5.5.0"},{"fixed":"5.10.181"}]},{"type":"ECOSYSTEM","events":[{"introduced":"5.11.0"},{"fixed":"5.15.114"}]},{"type":"ECOSYSTEM","events":[{"introduced":"5.16.0"},{"fixed":"6.1.31"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.2.0"},{"fixed":"6.3.5"}]}],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-54079.json"}}],"references":[{"type":"WEB","url":"https://git.kernel.org/stable/c/0c5f4cec759679c290720fbcf6bb81768e21c95b"},{"type":"WEB","url":"https://git.kernel.org/stable/c/465d919151a1e8d40daf366b868914f59d073211"},{"type":"WEB","url":"https://git.kernel.org/stable/c/4c9615474fb0a41cfad658d78db3c9ec70912969"},{"type":"WEB","url":"https://git.kernel.org/stable/c/b12faeca0e819ea09051a705fef9df7ea7e9e18c"},{"type":"WEB","url":"https://git.kernel.org/stable/c/c00bc80462afc7963f449d7f21d896d2f629cacc"},{"type":"WEB","url":"https://git.kernel.org/stable/c/d952a1eaafcc5f0351caad5dbe9b5b3300d1d529"},{"type":"WEB","url":"https://git.kernel.org/stable/c/e85757da9091998276ff21a13915ac25229cc232"},{"type":"WEB","url":"https://git.kernel.org/stable/c/e98e5bebfcafc75a7b41192a607dfea5c1268afa"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/54xxx/CVE-2023-54079.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2023-54079"},{"type":"PACKAGE","url":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git"}],"database_specific":{"cna_assigner":"Linux","osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/54xxx/CVE-2023-54079.json"},"severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"}]}