CVE-2021-3760: Use After Free
A flaw was found in the Linux kernel in NFC stack (protocol) that is UAF vulnerability of ndev->rfconninfo object.
Other sources
A flaw was found in the Linux kernel. A use-after-free vulnerability in the NFC stack can lead to a threat to confidentiality, integrity, and system availability.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2021-3760?
CVE-2021-3760 is classified as a use-after-free vulnerability in the Linux kernel's NFC stack, posing risks to confidentiality, integrity, and system availability.
How do I fix CVE-2021-3760?
To fix CVE-2021-3760, upgrade to the latest patched versions of the Linux kernel or apply available security patches from your distribution.
Which Linux kernel versions are affected by CVE-2021-3760?
CVE-2021-3760 affects various versions of the Linux kernel, including multiple distributions with versions less than 5.14.15 and with specific Debian versions.
What types of systems are impacted by CVE-2021-3760?
CVE-2021-3760 impacts systems running vulnerable versions of the Linux kernel, particularly those utilizing NFC stack functionality.
Is there a workaround for CVE-2021-3760?
While upgrading is the recommended solution for CVE-2021-3760, temporary workarounds may include disabling NFC functionality if it is not needed.