CVE-2021-3564
MEDIUMLinux kernel <3.13 - Memory Corruption
Title source: llmDescription
A flaw double-free memory corruption in the Linux kernel HCI device initialization subsystem was found in the way user attach malicious HCI TTY Bluetooth device. A local user could use this flaw to crash the system. This flaw affects all the Linux kernel versions starting from 3.13.
References (6)
Scores
CVSS v3
5.5
EPSS
0.0003
EPSS Percentile
6.4%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Classification
CWE
CWE-415
Status
published
Affected Products (3)
linux/linux_kernel
fedoraproject/fedora
debian/debian_linux
Timeline
Published
Jun 08, 2021
Tracked Since
Feb 18, 2026