Vulnerabilities > CVE-2021-38204 - Use After Free vulnerability in multiple products

047910
CVSS 4.6 - MEDIUM
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
local
low complexity
linux
debian
CWE-416

Summary

drivers/usb/host/max3421-hcd.c in the Linux kernel before 5.13.6 allows physically proximate attackers to cause a denial of service (use-after-free and panic) by removing a MAX-3421 USB device in certain situations.

Vulnerable Configurations

Part Description Count
OS
Linux
3724
OS
Debian
1

Common Weakness Enumeration (CWE)