Back to search
CVE-2021-3564
Published: Jun 8, 2021
Modified: Aug 3, 2024
PUBLISHED
Description
A flaw double-free memory corruption in the Linux kernel HCI device initialization subsystem was found in the way user attach malicious HCI TTY Bluetooth device. A local user could use this flaw to crash the system. This flaw affects all the Linux kernel versions starting from 3.13.
| Vendor | Product | Versions |
|---|---|---|
n/a | kernel | affected All Linux kernel versions starting from 3.13 |
Weaknesses (CWE)
References
[oss-security] 20210525 CVE-2021-3564 Linux Bluetooth device initialization implementation bug
mailing-list
x_refsource_MLIST
[oss-security] 20210601 Re: CVE-2021-3564 Linux Bluetooth device initialization implementation bug
mailing-list
x_refsource_MLIST
https://bugzilla.redhat.com/show_bug.cgi?id=1964139
x_refsource_MISC
https://www.openwall.com/lists/oss-security/2021/05/25/1
x_refsource_MISC
[debian-lts-announce] 20210623 [SECURITY] [DLA 2689-1] linux security update
mailing-list
x_refsource_MLIST
[debian-lts-announce] 20210623 [SECURITY] [DLA 2690-1] linux-4.19 security update
mailing-list
x_refsource_MLIST
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now