CVE-2021-3752
PoC —CVSS 3.1
7.1 high
EPSS
2%p76
Published
()
Modified
Description
A use-after-free flaw was found in the Linux kernel’s Bluetooth subsystem in the way user calls connect to the socket and disconnect simultaneously due to a race condition. This flaw allows a user to crash the system or escalate their privileges. The highest threat from this vulnerability is to confidentiality, integrity, as well as system availability.
- Vendors
- linuxredhatfedoraprojectnetappdebianoracle
- Products
- linux kernel, 3scale, virtualization host, fedora, enterprise linux, enterprise linux for real time, enterprise linux for real time for nfv, h300s firmware, h500s firmware, h700s firmware, h300e firmware, h500e firmware
- Weakness
- CWE-416, CWE-362
- Vector
- CVSS:3.1/AV:A/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
In the news0 stories
No ingested article mentions this CVE yet.