Vulnerabilities > CVE-2021-33034 - Use After Free vulnerability in multiple products

047910
CVSS 7.8 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
LOW
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH

Summary

In the Linux kernel before 5.12.4, net/bluetooth/hci_event.c has a use-after-free when destroying an hci_chan, aka CID-5c4c8c954409. This leads to writing an arbitrary value.

Vulnerable Configurations

Part Description Count
OS
Linux
4901
OS
Fedoraproject
1
OS
Debian
1

Common Weakness Enumeration (CWE)