CVE-2021-3659
MEDIUMLinux Kernel < 5.12 - Denial of Service via IEEE 802.15.4 LR-WPAN Connection Close
Title source: llmDescription
A NULL pointer dereference flaw was found in the Linux kernel’s IEEE 802.15.4 wireless networking subsystem in the way the user closes the LR-WPAN connection. This flaw allows a local user to crash the system. The highest threat from this vulnerability is to system availability.
References (3)
Core 3
Core References
Patch, Vendor Advisory x_refsource_misc
https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=1165affd484889d4986cf3b724318935a0b120d8
Issue Tracking, Patch, Third Party Advisory x_refsource_misc
https://bugzilla.redhat.com/show_bug.cgi?id=1975949
Third Party Advisory x_refsource_misc
https://access.redhat.com/security/cve/CVE-2021-3659
Scores
CVSS v3
5.5
EPSS
0.0027
EPSS Percentile
17.7%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Details
CWE
CWE-252
CWE-476
Status
published
Products (16)
fedoraproject/fedora
34
linux/linux_kernel
< 5.12
redhat/codeready_linux_builder
redhat/enterprise_linux
7.0
redhat/enterprise_linux
8.0
redhat/enterprise_linux_for_ibm_z_systems
8.0
redhat/enterprise_linux_for_ibm_z_systems_eus
8.6
redhat/enterprise_linux_for_power_little_endian_eus
8.6
redhat/enterprise_linux_for_real_time
8.0
redhat/enterprise_linux_for_real_time_for_nfv
8.0
... and 6 more
Published
Aug 22, 2022
Tracked Since
Feb 18, 2026