---
id: CVE-2021-32537
title: >-
  Realtek HAD contains a driver crashed vulnerability which allows local side
  attackers to send a special string to the kernel driver in a user’s mode
summary: >-
  Realtek HAD contains a driver crashed vulnerability which allows local side
  attackers to send a special string to the kernel driver in a user’s mode. Due
  to unexpected commands, the kernel driver will cause the system crashed.
severity: medium
cvss: 6.5
cvssVector: 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H'
cwe:
  - CWE-119
vendor: realtek
product: hda_driver
affected:
  - 'hda_driver >= 8155, <= 9150'
published: '2021-07-07'
updated: '2026-10-08'
sourceUpdated: '2026-10-08T22:17:09.453'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2021-32537'
references:
  - url: >-
      http://packetstormsecurity.com/files/163498/Realtek-RTKVHD64.sys-Out-Of-Bounds-Access.html
    label: twcert@cert.org.tw
  - url: 'https://www.twcert.org.tw/tw/cp-132-4813-7b578-1.html'
    label: twcert@cert.org.tw
  - url: >-
      http://packetstormsecurity.com/files/163498/Realtek-RTKVHD64.sys-Out-Of-Bounds-Access.html
    label: af854a3a-2127-422b-91ae-364da2661108
  - url: 'https://www.twcert.org.tw/tw/cp-132-4813-7b578-1.html'
    label: af854a3a-2127-422b-91ae-364da2661108
tags:
  - nvd
  - exploit-available
epss: 0.00436
epssPercentile: 0.35904
exploits:
  github: 1
  githubRepos:
    - 'https://github.com/0vercl0k/CVE-2021-32537'
  checkedAt: '2026-10-08T23:17:21.753Z'
exploitAvailable: true
ingestedAt: '2026-10-08T23:16:47.320Z'
---

## Overview

Realtek HAD contains a driver crashed vulnerability which allows local side attackers to send a special string to the kernel driver in a user’s mode. Due to unexpected commands, the kernel driver will cause the system crashed.

## Affected

- `hda_driver >= 8155, <= 9150`

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
