A NULL pointer dereference flaw was found in the Linux kernel’s IEEE 802.15.4 wireless networking subsystem in the way the user closes the LR-WPAN connection. This flaw allows a local user to crash the system. The highest threat from this vulnerability is to system availability.
The product does not check the return value from a method or function, which can prevent it from detecting unexpected states and conditions.
The product dereferences a pointer that it expects to be valid but is NULL.
Link | Tags |
---|---|
https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=1165affd484889d4986cf3b724318935a0b120d8 | patch vendor advisory |
https://bugzilla.redhat.com/show_bug.cgi?id=1975949 | patch third party advisory issue tracking |
https://access.redhat.com/security/cve/CVE-2021-3659 | third party advisory |