{"id":"CVE-2021-3483","title":"A flaw was found in the Nosy driver in the Linux kernel","summary":"A flaw was found in the Nosy driver in the Linux kernel. This issue allows a device to be inserted twice into a doubly-linked list, leading to a use-after-free when one of these devices is removed. The highest threat from this vulnerabil…","severity":"high","cvss":7.8,"cvssVector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","cwe":["CWE-416"],"vendor":"netapp","product":"cloud_backup","affected":["linux_kernel < 5.12","linux_kernel = 5.12","debian_linux = 9.0","cloud_backup","h300s_firmware","h500s_firmware","h700s_firmware","h300e_firmware","h500e_firmware","h700e_firmware","h410s_firmware","h410c_firmware"],"patched":["linux_kernel 5.12"],"published":"2021-05-17","updated":"2026-08-05","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2021-3483","references":[{"url":"http://www.openwall.com/lists/oss-security/2021/04/07/1","label":"secalert@redhat.com"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=1948045","label":"secalert@redhat.com"},{"url":"https://lists.debian.org/debian-lts-announce/2021/06/msg00019.html","label":"secalert@redhat.com"},{"url":"https://lists.debian.org/debian-lts-announce/2021/06/msg00020.html","label":"secalert@redhat.com"},{"url":"https://security.netapp.com/advisory/ntap-20210629-0002/","label":"secalert@redhat.com"},{"url":"http://www.openwall.com/lists/oss-security/2021/04/07/1","label":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=1948045","label":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://lists.debian.org/debian-lts-announce/2021/06/msg00019.html","label":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://lists.debian.org/debian-lts-announce/2021/06/msg00020.html","label":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://security.netapp.com/advisory/ntap-20210629-0002/","label":"af854a3a-2127-422b-91ae-364da2661108"}],"tags":["nvd"],"epss":0.00361,"epssPercentile":0.29919,"ingestedAt":"2026-08-05T22:52:53.229Z","slug":"CVE-2021-3483","body":"## Overview\n\nA flaw was found in the Nosy driver in the Linux kernel. This issue allows a device to be inserted twice into a doubly-linked list, leading to a use-after-free when one of these devices is removed. The highest threat from this vulnerability is to confidentiality, integrity, as well as system availability. Versions before kernel 5.12-rc6 are affected\n\n## Affected\n\n- `linux_kernel < 5.12`\n- `linux_kernel = 5.12`\n- `debian_linux = 9.0`\n- `cloud_backup`\n- `h300s_firmware`\n- `h500s_firmware`\n- `h700s_firmware`\n- `h300e_firmware`\n- `h500e_firmware`\n- `h700e_firmware`\n- `h410s_firmware`\n- `h410c_firmware`\n\n## Remediation\n\nUpgrade past the affected range:\n\n- `linux_kernel 5.12`","depth":"twilight","depthScore":43,"depthScoreParts":{"impact":42.9,"likelihood":0.1,"exploitation":0,"ransomware":0},"changes":[]}