CVE-2021-3564
3Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackepss 0.5%
exploitation probability
0.5%top 59% of all CVEs
observed exploitation
nono source reports it
A flaw double-free memory corruption in the Linux kernel HCI device initialization subsystem was found in the way user attach malicious HCI TTY Bluetooth device. A local user could use this flaw to crash the system. This flaw affects all the Linux kernel versions starting from 3.13.
Affected products
n/a · kernelReferences
https://bugzilla.redhat.com/show_bug.cgi?id=1964139https://lists.debian.org/debian-lts-announce/2021/06/msg00019.htmlhttps://lists.debian.org/debian-lts-announce/2021/06/msg00020.htmlhttps://www.openwall.com/lists/oss-security/2021/05/25/1http://www.openwall.com/lists/oss-security/2021/05/25/1http://www.openwall.com/lists/oss-security/2021/06/01/2