CVE-2021-37159

Description from NVD

hso_free_net_device in drivers/net/usb/hso.c in the Linux kernel through 5.13.4 calls unregister_netdev without checking for the NETREG_REGISTERED state, leading to a use-after-free and a double free.

Information Acquisition Date:2021-12-31T16:40Z
CVSS 2.0: 4.4 MEDIUM CVSS 3.x: 6.4 MEDIUM

▼ CVSS3 Vec CVSS:3.1/AV:P/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H

▼ CVSS2 Vec AV:L/AC:M/Au:N/C:P/I:P/A:P

NVD References

 https://www.spinics.net/lists/linux-usb/msg202228.html
     source:MISC
     tags:Mailing List    Patch    Third Party Advisory    
 https://security.netapp.com/advisory/ntap-20210819-0003/
     source:CONFIRM
     tags:Third Party Advisory    
 [debian-lts-announce] 20211015 [SECURITY] [DLA 2785-1] linux-4.19 security update
     source:MLIST
     tags:Mailing List    Third Party Advisory    
 [debian-lts-announce] 20211216 [SECURITY] [DLA 2843-1] linux security update
     source:MLIST
     tags:Mailing List    Third Party Advisory    

Refer to Information on External Sites

CVE InfomationExploits or more Infomation
mitreEXPLOIT DATABASE
NVD0day.today
vulmon.comgithub
CVE DetailsTwitter
JVN ENG JPN
Reconshell

Software Tag: Linux(1 tweets)



List of frequently cited URLs

URLNum of Times Referred to
https://suse.com/support/update/announcement/2021/suse-su-2...7
https://auscert.org.au/bulletins/ESB-2021.40777

Information from Twitter

User URL Info Source Date
threatintelctr https://nvd.nist.gov/vuln/detail/CVE-2021-37159 Source threatintelctr   1629140819545391104 2023/02/25

List of frequently cited URLs

URLNum of Times Referred to
suse.com7
auscert.org.au7

Information from Twitter

User URL Info Source
threatintelctr nvd.nist.gov Show Tweet

GitHub Search Results: Up to 10
NameURL
No Data

GitHub Search Results: Up to 10
NameURL
No Data

2023/02/25 Score : 1
Added Har-sia Database : 2021/07/22
Last Modified : 2023/02/25
Highest Scored Date : 2021/12/02
Highest Score : 35