Unrated severityNVD Advisory· Published Oct 19, 2021· Updated Sep 16, 2024
Disconnecting L2CAP channel right after invalid ATT request leads freeze
CVE-2021-3455
Description
Disconnecting L2CAP channel right after invalid ATT request leads freeze. Zephyr versions >= 2.4.0, >= 2.5.0 contain Use After Free (CWE-416). For more information, see https://github.com/zephyrproject-rtos/zephyr/security/advisories/GHSA-7g38-3x9v-v7vp
Affected products
1- Range: 2.4.0
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1- github.com/zephyrproject-rtos/zephyr/security/advisories/GHSA-7g38-3x9v-v7vpmitrex_refsource_MISC
News mentions
0No linked articles in our index yet.