What the vulnerability does

01Description

A flaw double-free memory corruption in the Linux kernel HCI device initialization subsystem was found in the way user attach malicious HCI TTY Bluetooth device. A local user could use this flaw to crash the system. This flaw affects all the Linux kernel versions starting from 3.13.

Key dates

02Disclosure timeline

June 8, 2021 CVE published
August 3, 2024 Record updated