ZeroHour

CVE-2021-3752

PoC
CVSS 3.1
7.1 high
EPSS
2%p76
Published
()
Modified
Description

A use-after-free flaw was found in the Linux kernel’s Bluetooth subsystem in the way user calls connect to the socket and disconnect simultaneously due to a race condition. This flaw allows a user to crash the system or escalate their privileges. The highest threat from this vulnerability is to confidentiality, integrity, as well as system availability.

Vendors
linuxredhatfedoraprojectnetappdebianoracle
Products
linux kernel, 3scale, virtualization host, fedora, enterprise linux, enterprise linux for real time, enterprise linux for real time for nfv, h300s firmware, h500s firmware, h700s firmware, h300e firmware, h500e firmware
Weakness
CWE-416, CWE-362
Vector
CVSS:3.1/AV:A/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.