CVE-2021-3573

Description

A use-after-free in function hci_sock_bound_ioctl() of the Linux kernel HCI subsystem was found in the way user calls ioct HCIUNBLOCKADDR or other way triggers race condition of the call hci_unregister_dev() together with one of the calls hci_sock_blacklist_add(), hci_sock_blacklist_del(), hci_get_conn_info(), hci_get_auth_info(). A privileged local user could use this flaw to crash the system or escalate their privileges on the system. This flaw affects the Linux kernel versions prior to 5.13-rc5.

Risk Information

Base Score
6.4
MODERATE
Vector
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
0.029

Associated Vulnerability

VulnerabilityOS Platform
Linux kernel for OEM systems (USN-5015-1) linux-image-oem-20.04_5.10.0.1038.40_amd64.debLinux
Linux kernel for OEM systems (USN-5015-1) linux-image-oem-20.04b_5.10.0.1038.40_amd64.debLinux
Linux kernel for OEM systems (USN-5015-1) linux-image-5.10.0-1038-oem_5.10.0-1038.40_amd64.debLinux
Linux kernel (USN-5044-1) linux-image-kvm_4.15.0.1098.94_amd64.debLinux
Linux kernel (USN-5044-1) linux-image-generic_4.15.0.154.143_i386.debLinux
Linux kernel (USN-5044-1) linux-image-generic_4.15.0.154.143_amd64.debLinux
Linux kernel (USN-5044-1) linux-image-virtual_4.15.0.154.143_i386.debLinux
Linux kernel (USN-5044-1) linux-image-virtual_4.15.0.154.143_amd64.debLinux
Linux kernel (USN-5044-1) linux-image-lowlatency_4.15.0.154.143_i386.debLinux
Linux kernel (USN-5044-1) linux-image-lowlatency_4.15.0.154.143_amd64.debLinux
Linux kernel (USN-5044-1) linux-image-aws-lts-18.04_4.15.0.1110.113_amd64.debLinux
Linux kernel (USN-5044-1) linux-image-gcp-lts-18.04_4.15.0.1107.126_amd64.debLinux
Linux kernel (USN-5044-1) linux-image-4.15.0-1098-kvm_4.15.0-1098.100_amd64.debLinux
Linux kernel (USN-5044-1) linux-image-4.15.0-1107-gcp_4.15.0-1107.121_amd64.debLinux
Linux kernel (USN-5044-1) linux-image-4.15.0-1110-aws_4.15.0-1110.117_amd64.debLinux
Linux kernel (USN-5044-1) linux-image-azure-lts-18.04_4.15.0.1122.95_amd64.debLinux
Linux kernel (USN-5044-1) linux-image-oracle-lts-18.04_4.15.0.1079.89_amd64.debLinux
Linux kernel (USN-5044-1) linux-image-4.15.0-1122-azure_4.15.0-1122.135_amd64.debLinux
Linux kernel (USN-5044-1) linux-image-4.15.0-1079-oracle_4.15.0-1079.87_amd64.debLinux
Linux kernel (USN-5044-1) linux-image-4.15.0-154-generic_4.15.0-154.161_i386.debLinux
Linux kernel (USN-5044-1) linux-image-4.15.0-154-generic_4.15.0-154.161_amd64.debLinux
Linux kernel (USN-5044-1) linux-image-4.15.0-154-lowlatency_4.15.0-154.161_i386.debLinux
Linux kernel (USN-5044-1) linux-image-4.15.0-154-lowlatency_4.15.0-154.161_amd64.debLinux
Linux kernel (USN-5045-1) linux-image-aws_5.4.0.1055.38_amd64.debLinux
Linux kernel (USN-5045-1) linux-image-gcp_5.4.0.1051.37_amd64.debLinux
Linux kernel (USN-5045-1) linux-image-gke_5.4.0.1051.61_amd64.debLinux
Linux kernel (USN-5045-1) linux-image-kvm_5.4.0.1045.44_amd64.debLinux
Linux kernel (USN-5045-1) linux-image-oem_5.4.0.81.85_amd64.debLinux
Linux kernel (USN-5045-1) linux-image-oem_5.4.0.81.91~18.04.73_amd64.debLinux
Linux kernel (USN-5045-1) linux-image-azure_5.4.0.1056.36_amd64.debLinux
Linux kernel (USN-5045-1) linux-image-gkeop_5.4.0.1022.25_amd64.debLinux
Linux kernel (USN-5045-1) linux-image-oracle_5.4.0.1053.57~18.04.33_amd64.debLinux
Linux kernel (USN-5045-1) linux-image-generic_5.4.0.81.85_amd64.debLinux
Linux kernel (USN-5045-1) linux-image-gke-5.4_5.4.0.1051.61_amd64.debLinux
Linux kernel (USN-5045-1) linux-image-gke-5.4_5.4.0.1051.54~18.04.16_amd64.debLinux
Linux kernel (USN-5045-1) linux-image-virtual_5.4.0.81.85_amd64.debLinux
Linux kernel (USN-5045-1) linux-image-oem-osp1_5.4.0.81.85_amd64.debLinux
Linux kernel (USN-5045-1) linux-image-oem-osp1_5.4.0.81.91~18.04.73_amd64.debLinux
Linux kernel (USN-5045-1) linux-image-gkeop-5.4_5.4.0.1022.25_amd64.debLinux
Linux kernel (USN-5045-1) linux-image-gkeop-5.4_5.4.0.1022.23~18.04.23_amd64.debLinux
Linux kernel (USN-5045-1) linux-image-lowlatency_5.4.0.81.85_amd64.debLinux
Linux kernel (USN-5045-1) linux-image-aws-lts-20.04_5.4.0.1055.58_amd64.debLinux
Linux kernel (USN-5045-1) linux-image-gcp-lts-20.04_5.4.0.1051.61_amd64.debLinux
Linux kernel (USN-5045-1) linux-image-5.4.0-1045-kvm_5.4.0-1045.47_amd64.debLinux
Linux kernel (USN-5045-1) linux-image-5.4.0-1051-gcp_5.4.0-1051.55_amd64.debLinux
Linux kernel (USN-5045-1) linux-image-5.4.0-1051-gcp_5.4.0-1051.55~18.04.1_amd64.debLinux
Linux kernel (USN-5045-1) linux-image-5.4.0-1051-gke_5.4.0-1051.54_amd64.debLinux
Linux kernel (USN-5045-1) linux-image-5.4.0-1051-gke_5.4.0-1051.54~18.04.1_amd64.debLinux
Linux kernel (USN-5045-1) linux-image-5.4.0-1055-aws_5.4.0-1055.58_amd64.debLinux
Linux kernel (USN-5045-1) linux-image-5.4.0-1055-aws_5.4.0-1055.58~18.04.1_amd64.debLinux
Linux kernel (USN-5045-1) linux-image-azure-lts-20.04_5.4.0.1056.54_amd64.debLinux
Linux kernel (USN-5045-1) linux-image-5.4.0-1022-gkeop_5.4.0-1022.23_amd64.debLinux
Linux kernel (USN-5045-1) linux-image-5.4.0-1022-gkeop_5.4.0-1022.23~18.04.1_amd64.debLinux
Linux kernel (USN-5045-1) linux-image-5.4.0-1056-azure_5.4.0-1056.58_amd64.debLinux
Linux kernel (USN-5045-1) linux-image-5.4.0-1056-azure_5.4.0-1056.58~18.04.1_amd64.debLinux
Linux kernel (USN-5045-1) linux-image-5.4.0-81-generic_5.4.0-81.91_amd64.debLinux
Linux kernel (USN-5045-1) linux-image-5.4.0-81-generic_5.4.0-81.91~18.04.1_i386.debLinux
Linux kernel (USN-5045-1) linux-image-5.4.0-81-generic_5.4.0-81.91~18.04.1_amd64.debLinux
Linux kernel (USN-5045-1) linux-image-oracle-lts-20.04_5.4.0.1053.53_amd64.debLinux
Linux kernel (USN-5045-1) linux-image-5.4.0-1053-oracle_5.4.0-1053.57_amd64.debLinux
Linux kernel (USN-5045-1) linux-image-5.4.0-1053-oracle_5.4.0-1053.57~18.04.1_amd64.debLinux
Linux kernel (USN-5045-1) linux-image-generic-hwe-18.04_5.4.0.81.91~18.04.73_i386.debLinux
Linux kernel (USN-5045-1) linux-image-generic-hwe-18.04_5.4.0.81.91~18.04.73_amd64.debLinux
Linux kernel (USN-5045-1) linux-image-virtual-hwe-18.04_5.4.0.81.91~18.04.73_i386.debLinux
Linux kernel (USN-5045-1) linux-image-virtual-hwe-18.04_5.4.0.81.91~18.04.73_amd64.debLinux
Linux kernel (USN-5045-1) linux-image-5.4.0-81-lowlatency_5.4.0-81.91_amd64.debLinux
Linux kernel (USN-5045-1) linux-image-5.4.0-81-lowlatency_5.4.0-81.91~18.04.1_i386.debLinux
Linux kernel (USN-5045-1) linux-image-5.4.0-81-lowlatency_5.4.0-81.91~18.04.1_amd64.debLinux
Linux kernel (USN-5045-1) linux-image-lowlatency-hwe-18.04_5.4.0.81.91~18.04.73_i386.debLinux
Linux kernel (USN-5045-1) linux-image-lowlatency-hwe-18.04_5.4.0.81.91~18.04.73_amd64.debLinux
Linux kernel (USN-5046-1) linux-image-aws_5.11.0.1016.17_amd64.debLinux
Linux kernel (USN-5046-1) linux-image-gcp_5.11.0.1017.17_amd64.debLinux
Linux kernel (USN-5046-1) linux-image-gke_5.11.0.1017.17_amd64.debLinux
Linux kernel (USN-5046-1) linux-image-azure_5.11.0.1013.14_amd64.debLinux
Linux kernel (USN-5046-1) linux-image-oracle_5.11.0.1016.17_amd64.debLinux
Linux kernel (USN-5046-1) linux-image-generic_5.11.0.31.33_amd64.debLinux
Linux kernel (USN-5046-1) linux-image-virtual_5.11.0.31.33_amd64.debLinux
Linux kernel (USN-5046-1) linux-image-oem-20.04_5.11.0.31.33_amd64.debLinux
Linux kernel (USN-5046-1) linux-image-lowlatency_5.11.0.31.33_amd64.debLinux
Linux kernel (USN-5046-1) linux-image-5.11.0-1016-aws_5.11.0-1016.17_amd64.debLinux
Linux kernel (USN-5046-1) linux-image-5.11.0-1017-gcp_5.11.0-1017.19_amd64.debLinux
Linux kernel (USN-5046-1) linux-image-5.11.0-1013-azure_5.11.0-1013.14_amd64.debLinux
Linux kernel (USN-5046-1) linux-image-5.11.0-27-generic_5.11.0-27.29~20.04.1_amd64.debLinux
Linux kernel (USN-5046-1) linux-image-5.11.0-31-generic_5.11.0-31.33_amd64.debLinux
Linux kernel (USN-5046-1) linux-image-generic-hwe-20.04_5.11.0.27.29~20.04.11_amd64.debLinux
Linux kernel (USN-5046-1) linux-image-virtual-hwe-20.04_5.11.0.27.29~20.04.11_amd64.debLinux
Linux kernel (USN-5046-1) linux-image-5.11.0-1016-oracle_5.11.0-1016.17_amd64.debLinux
Linux kernel (USN-5046-1) linux-image-5.11.0-27-lowlatency_5.11.0-27.29~20.04.1_amd64.debLinux
Linux kernel (USN-5046-1) linux-image-5.11.0-31-lowlatency_5.11.0-31.33_amd64.debLinux
Linux kernel (USN-5046-1) linux-image-lowlatency-hwe-20.04_5.11.0.27.29~20.04.11_amd64.debLinux
Linux kernel for Amazon Web Services (AWS) systems (USN-5050-1) linux-image-aws_5.8.0.1042.44~20.04.14_amd64.debLinux
Linux kernel for Amazon Web Services (AWS) systems (USN-5050-1) linux-image-gcp_5.8.0.1039.14_amd64.debLinux
Linux kernel for Amazon Web Services (AWS) systems (USN-5050-1) linux-image-azure_5.8.0.1040.43~20.04.12_amd64.debLinux
Linux kernel for Amazon Web Services (AWS) systems (USN-5050-1) linux-image-oracle_5.8.0.1038.39~20.04.14_amd64.debLinux
Linux kernel for Amazon Web Services (AWS) systems (USN-5050-1) linux-image-5.8.0-1039-gcp_5.8.0-1039.41_amd64.debLinux
Linux kernel for Amazon Web Services (AWS) systems (USN-5050-1) linux-image-5.8.0-1042-aws_5.8.0-1042.44~20.04.1_amd64.debLinux
Linux kernel for Amazon Web Services (AWS) systems (USN-5050-1) linux-image-5.8.0-1040-azure_5.8.0-1040.43~20.04.1_amd64.debLinux
Linux kernel for Amazon Web Services (AWS) systems (USN-5050-1) linux-image-5.8.0-1038-oracle_5.8.0-1038.39~20.04.1_amd64.debLinux
Kernel-uek update (ELSA-2021-9450) kernel-uek-5.4.17-2102.205.7.2.el8uek.x86_64.rpmLinux
Kernel-uek-debug update (ELSA-2021-9450) kernel-uek-debug-5.4.17-2102.205.7.2.el8uek.x86_64.rpmLinux
Kernel-uek-debug-devel update (ELSA-2021-9450) kernel-uek-debug-devel-5.4.17-2102.205.7.2.el8uek.x86_64.rpmLinux
Kernel-uek-devel update (ELSA-2021-9450) kernel-uek-devel-5.4.17-2102.205.7.2.el8uek.x86_64.rpmLinux
Kernel-uek-doc update (ELSA-2021-9450) kernel-uek-doc-5.4.17-2102.205.7.2.el8uek.noarch.rpmLinux
Kernel-uek update (ELSA-2021-9460) kernel-uek-4.14.35-2047.507.7.5.el7uek.x86_64.rpmLinux
Kernel-uek-debug update (ELSA-2021-9460) kernel-uek-debug-4.14.35-2047.507.7.5.el7uek.x86_64.rpmLinux
Kernel-uek-debug-devel update (ELSA-2021-9460) kernel-uek-debug-devel-4.14.35-2047.507.7.5.el7uek.x86_64.rpmLinux
Kernel-uek-devel update (ELSA-2021-9460) kernel-uek-devel-4.14.35-2047.507.7.5.el7uek.x86_64.rpmLinux
Kernel-uek-doc update (ELSA-2021-9460) kernel-uek-doc-4.14.35-2047.507.7.5.el7uek.noarch.rpmLinux
Kernel-uek-tools update (ELSA-2021-9460) kernel-uek-tools-4.14.35-2047.507.7.5.el7uek.x86_64.rpmLinux
Kernel-uek update (ELSA-2021-9485) kernel-uek-4.14.35-2047.508.3.el7uek.x86_64.rpmLinux
Kernel-uek-debug update (ELSA-2021-9485) kernel-uek-debug-4.14.35-2047.508.3.el7uek.x86_64.rpmLinux
Kernel-uek-debug-devel update (ELSA-2021-9485) kernel-uek-debug-devel-4.14.35-2047.508.3.el7uek.x86_64.rpmLinux
Kernel-uek-devel update (ELSA-2021-9485) kernel-uek-devel-4.14.35-2047.508.3.el7uek.x86_64.rpmLinux
Kernel-uek-doc update (ELSA-2021-9485) kernel-uek-doc-4.14.35-2047.508.3.el7uek.noarch.rpmLinux
Kernel-uek-tools update (ELSA-2021-9485) kernel-uek-tools-4.14.35-2047.508.3.el7uek.x86_64.rpmLinux
(RHSA-2021:4356) kernel security, bug fix, and enhancement update bpftool-4.18.0-348.el8.x86_64.rpmLinux
(RHSA-2021:4356) kernel security, bug fix, and enhancement update kernel-4.18.0-348.el8.x86_64.rpmLinux
(RHSA-2021:4356) kernel security, bug fix, and enhancement update kernel-abi-stablelists-4.18.0-348.el8.noarch.rpmLinux
(RHSA-2021:4356) kernel security, bug fix, and enhancement update kernel-core-4.18.0-348.el8.x86_64.rpmLinux
(RHSA-2021:4356) kernel security, bug fix, and enhancement update kernel-cross-headers-4.18.0-348.el8.x86_64.rpmLinux
(RHSA-2021:4356) kernel security, bug fix, and enhancement update kernel-debug-4.18.0-348.el8.x86_64.rpmLinux
(RHSA-2021:4356) kernel security, bug fix, and enhancement update kernel-debug-core-4.18.0-348.el8.x86_64.rpmLinux
(RHSA-2021:4356) kernel security, bug fix, and enhancement update kernel-debug-devel-4.18.0-348.el8.x86_64.rpmLinux
(RHSA-2021:4356) kernel security, bug fix, and enhancement update kernel-debug-modules-4.18.0-348.el8.x86_64.rpmLinux
(RHSA-2021:4356) kernel security, bug fix, and enhancement update kernel-debug-modules-extra-4.18.0-348.el8.x86_64.rpmLinux
(RHSA-2021:4356) kernel security, bug fix, and enhancement update kernel-devel-4.18.0-348.el8.x86_64.rpmLinux
(RHSA-2021:4356) kernel security, bug fix, and enhancement update kernel-doc-4.18.0-348.el8.noarch.rpmLinux
(RHSA-2021:4356) kernel security, bug fix, and enhancement update kernel-headers-4.18.0-348.el8.x86_64.rpmLinux
(RHSA-2021:4356) kernel security, bug fix, and enhancement update kernel-modules-4.18.0-348.el8.x86_64.rpmLinux
(RHSA-2021:4356) kernel security, bug fix, and enhancement update kernel-modules-extra-4.18.0-348.el8.x86_64.rpmLinux
(RHSA-2021:4356) kernel security, bug fix, and enhancement update kernel-tools-4.18.0-348.el8.x86_64.rpmLinux
(RHSA-2021:4356) kernel security, bug fix, and enhancement update kernel-tools-libs-4.18.0-348.el8.x86_64.rpmLinux
(RHSA-2021:4356) kernel security, bug fix, and enhancement update perf-4.18.0-348.el8.x86_64.rpmLinux
(RHSA-2021:4356) kernel security, bug fix, and enhancement update python3-perf-4.18.0-348.el8.x86_64.rpmLinux
(RHSA-2022:0620) kernel security and bug fix update bpftool-3.10.0-1160.59.1.el7.x86_64.rpmLinux
(RHSA-2022:0620) kernel security and bug fix update kernel-3.10.0-1160.59.1.el7.x86_64.rpmLinux
(RHSA-2022:0620) kernel security and bug fix update kernel-abi-whitelists-3.10.0-1160.59.1.el7.noarch.rpmLinux
(RHSA-2022:0620) kernel security and bug fix update kernel-debug-3.10.0-1160.59.1.el7.x86_64.rpmLinux
(RHSA-2022:0620) kernel security and bug fix update kernel-debug-devel-3.10.0-1160.59.1.el7.x86_64.rpmLinux
(RHSA-2022:0620) kernel security and bug fix update kernel-devel-3.10.0-1160.59.1.el7.x86_64.rpmLinux
(RHSA-2022:0620) kernel security and bug fix update kernel-doc-3.10.0-1160.59.1.el7.noarch.rpmLinux
(RHSA-2022:0620) kernel security and bug fix update kernel-headers-3.10.0-1160.59.1.el7.x86_64.rpmLinux
(RHSA-2022:0620) kernel security and bug fix update kernel-tools-3.10.0-1160.59.1.el7.x86_64.rpmLinux
(RHSA-2022:0620) kernel security and bug fix update kernel-tools-libs-3.10.0-1160.59.1.el7.x86_64.rpmLinux
(RHSA-2022:0620) kernel security and bug fix update kernel-tools-libs-devel-3.10.0-1160.59.1.el7.x86_64.rpmLinux
(RHSA-2022:0620) kernel security and bug fix update perf-3.10.0-1160.59.1.el7.x86_64.rpmLinux
(RHSA-2022:0620) kernel security and bug fix update python-perf-3.10.0-1160.59.1.el7.x86_64.rpmLinux
Bpftool update (ELSA-2022-0620) bpftool-3.10.0-1160.59.1.el7.x86_64.rpmLinux
Kernel update (ELSA-2022-0620) kernel-3.10.0-1160.59.1.el7.x86_64.rpmLinux
Kernel-abi-whitelists update (ELSA-2022-0620) kernel-abi-whitelists-3.10.0-1160.59.1.el7.noarch.rpmLinux
Kernel-debug update (ELSA-2022-0620) kernel-debug-3.10.0-1160.59.1.el7.x86_64.rpmLinux
Kernel-debug-devel update (ELSA-2022-0620) kernel-debug-devel-3.10.0-1160.59.1.el7.x86_64.rpmLinux
Kernel-devel update (ELSA-2022-0620) kernel-devel-3.10.0-1160.59.1.el7.x86_64.rpmLinux
Kernel-doc update (ELSA-2022-0620) kernel-doc-3.10.0-1160.59.1.el7.noarch.rpmLinux
Kernel-headers update (ELSA-2022-0620) kernel-headers-3.10.0-1160.59.1.el7.x86_64.rpmLinux
Kernel-tools update (ELSA-2022-0620) kernel-tools-3.10.0-1160.59.1.el7.x86_64.rpmLinux
Kernel-tools-libs update (ELSA-2022-0620) kernel-tools-libs-3.10.0-1160.59.1.el7.x86_64.rpmLinux
Kernel-tools-libs-devel update (ELSA-2022-0620) kernel-tools-libs-devel-3.10.0-1160.59.1.el7.x86_64.rpmLinux
Perf update (ELSA-2022-0620) perf-3.10.0-1160.59.1.el7.x86_64.rpmLinux
Python-perf update (ELSA-2022-0620) python-perf-3.10.0-1160.59.1.el7.x86_64.rpmLinux
Kernel-uek update (ELSA-2022-9348) kernel-uek-4.1.12-124.62.3.el7uek.x86_64.rpmLinux
Kernel-uek-debug update (ELSA-2022-9348) kernel-uek-debug-4.1.12-124.62.3.el7uek.x86_64.rpmLinux
Kernel-uek-debug-devel update (ELSA-2022-9348) kernel-uek-debug-devel-4.1.12-124.62.3.el7uek.x86_64.rpmLinux
Kernel-uek-devel update (ELSA-2022-9348) kernel-uek-devel-4.1.12-124.62.3.el7uek.x86_64.rpmLinux
Kernel-uek-doc update (ELSA-2022-9348) kernel-uek-doc-4.1.12-124.62.3.el7uek.noarch.rpmLinux
Kernel-uek-firmware update (ELSA-2022-9348) kernel-uek-firmware-4.1.12-124.62.3.el7uek.noarch.rpmLinux
kernel Security Update (ALAS-2021-1685) kernel-livepatch-4.14.238-182.421-1.0-0.amzn2.x86_64.rpmLinux
Concurrent Execution using Shared Resource with Improper Synchronization (Race Condition) Vulnerability (CVE-2021-3573)NCM

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234