.A flaw was found in the CAN BCM networking protocol in the Linux kernel, where a local attacker can abuse a flaw in the CAN subsystem to corrupt memory, crash the system or escalate privileges. This race condition in net/can/bcm.c in the Linux kernel allows for local privilege escalation to root.
Conclusion & alert: CVE-2021-3609 is rated Exploit Available (55.5/100): CVSS High severity, with low exploitation likelihood (EPSS 0.43%). Core evidence: 1 public exploit reference(s) are indexed (Exploit-DB). Mandatory action: Public exploits are available—assess exposure, apply mitigations, and prioritize patching.
Risk is dynamic; we continuously reassess and refresh what is shown on this page as upstream context changes.
| EDB-ID | Source | Kind | Published | Link |
|---|---|---|---|---|
| — | nvd_ref | exploit_tag | Exploit-DB ↗ |
EPSS lead: Daily EPSS estimates relative likelihood of exploitation; percentile ranks this CVE among scored vulnerabilities (higher = more severe relative rank).
| # | Date | Old EPSS score | New EPSS score | Delta (New - Old) |
|---|---|---|---|---|
| 1 | 2026-06-15 | 0.06% | 0.43% | +0.38% |
| 2 | 2025-04-09 | 0.04% | 0.06% | +0.02% |
| 3 | 2025-03-30 | — | 0.04% | — |
Full EPSS history (8 records total)
CVSS metrics for this CVE.
| Base score | Version | Severity | Vector | Exploitability | Impact | Score source |
|---|---|---|---|---|---|---|
| 7.0 | 3.1 | HIGH |
|
1.0 | 5.9 | [email protected] |
| 6.9 | 2.0 | MEDIUM |
|
3.4 | 10.0 | [email protected] |
| vendor | priority | summary | link |
|---|---|---|---|
debian
|
not yet assigned | CVE-2021-3609 not yet assigned priority: Debian including 1 source packages (linux), 5 status rows across 5 suites (bookworm, bullseye, forky, sid, trixie): resolved 5. | https://security-tracker.debian.org/tracker/CVE-2021-3609 |
redhat
|
high | — | https://access.redhat.com/security/cve/CVE-2021-3609 |
suse
|
high | — | https://www.suse.com/security/cve/CVE-2021-3609/ |
ubuntu
|
high | CVE-2021-3609 high priority: Ubuntu including 168 source packages (linux, linux-allwinner, …), 2165 status rows across 16 suites (bionic, focal, groovy, hirsute, impish, jammy, kinetic, lunar, mantic, noble, oracular, plucky, questing, trusty, upstream, xenial): DNE 1681, released 232, not-affected 214, ignored 38. | https://ubuntu.com/security/CVE-2021-3609 |
| Vendor | Product | Version | Raw CPE |
|---|---|---|---|
| linux | linux_kernel | >= 2.6.25, < 4.4.276 | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* |
| linux | linux_kernel | >= 4.5, < 4.9.276 | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* |
| linux | linux_kernel | >= 4.10, < 4.14.240 | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* |
| linux | linux_kernel | >= 4.15, < 4.19.198 | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* |
| linux | linux_kernel | >= 4.20, < 5.4.132 | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* |
| linux | linux_kernel | >= 5.5.0, < 5.10.50 | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* |
| linux | linux_kernel | >= 5.11, < 5.12.17 | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* |
| linux | linux_kernel | >= 5.13, < 5.13.2 | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* |
| redhat | 3scale_api_management | 2.0 | cpe:2.3:a:redhat:3scale_api_management:2.0:*:*:*:*:*:*:* |
| redhat | build_of_quarkus | 1.0 | cpe:2.3:a:redhat:build_of_quarkus:1.0:*:*:*:*:*:*:* |
| redhat | codeready_linux_builder_eus | 8.1 | cpe:2.3:a:redhat:codeready_linux_builder_eus:8.1:*:*:*:*:*:*:* |
| redhat | codeready_linux_builder_eus | 8.2 | cpe:2.3:a:redhat:codeready_linux_builder_eus:8.2:*:*:*:*:*:*:* |
| redhat | codeready_linux_builder_eus | 8.4 | cpe:2.3:a:redhat:codeready_linux_builder_eus:8.4:*:*:*:*:*:*:* |
| redhat | codeready_linux_builder_for_power_little_endian_eus | 8.1 | cpe:2.3:a:redhat:codeready_linux_builder_for_power_little_endian_eus:8.1:*:*:*:*:*:*:* |
| redhat | codeready_linux_builder_for_power_little_endian_eus | 8.2 | cpe:2.3:a:redhat:codeready_linux_builder_for_power_little_endian_eus:8.2:*:*:*:*:*:*:* |
| redhat | codeready_linux_builder_for_power_little_endian_eus | 8.4 | cpe:2.3:a:redhat:codeready_linux_builder_for_power_little_endian_eus:8.4:*:*:*:*:*:*:* |
| redhat | openshift_container_platform | 4.6 | cpe:2.3:a:redhat:openshift_container_platform:4.6:*:*:*:*:*:*:* |
| redhat | openshift_container_platform | 4.7 | cpe:2.3:a:redhat:openshift_container_platform:4.7:*:*:*:*:*:*:* |
| redhat | openshift_container_platform | 4.8 | cpe:2.3:a:redhat:openshift_container_platform:4.8:*:*:*:*:*:*:* |
| redhat | virtualization | 4.0 | cpe:2.3:a:redhat:virtualization:4.0:*:*:*:*:*:*:* |
| redhat | virtualization_host | 4.0 | cpe:2.3:a:redhat:virtualization_host:4.0:*:*:*:*:*:*:* |
| redhat | enterprise_linux_aus | 8.2 | cpe:2.3:o:redhat:enterprise_linux_aus:8.2:*:*:*:*:*:*:* |
| redhat | enterprise_linux_eus | 8.1 | cpe:2.3:o:redhat:enterprise_linux_eus:8.1:*:*:*:*:*:*:* |
| redhat | enterprise_linux_eus | 8.2 | cpe:2.3:o:redhat:enterprise_linux_eus:8.2:*:*:*:*:*:*:* |
| redhat | enterprise_linux_eus | 8.4 | cpe:2.3:o:redhat:enterprise_linux_eus:8.4:*:*:*:*:*:*:* |
| redhat | enterprise_linux_for_ibm_z_systems_eus | 8.4 | cpe:2.3:o:redhat:enterprise_linux_for_ibm_z_systems_eus:8.4:*:*:*:*:*:*:* |
| redhat | enterprise_linux_for_ibm_z_systems_eus_s390x | 8.1 | cpe:2.3:o:redhat:enterprise_linux_for_ibm_z_systems_eus_s390x:8.1:*:*:*:*:*:*:* |
| redhat | enterprise_linux_for_power_little_endian_eus | 8.1 | cpe:2.3:o:redhat:enterprise_linux_for_power_little_endian_eus:8.1:*:*:*:*:*:*:* |
| redhat | enterprise_linux_for_power_little_endian_eus | 8.2 | cpe:2.3:o:redhat:enterprise_linux_for_power_little_endian_eus:8.2:*:*:*:*:*:*:* |
| redhat | enterprise_linux_for_power_little_endian_eus | 8.4 | cpe:2.3:o:redhat:enterprise_linux_for_power_little_endian_eus:8.4:*:*:*:*:*:*:* |
| redhat | enterprise_linux_for_real_time | 8.0 | cpe:2.3:o:redhat:enterprise_linux_for_real_time:8.0:*:*:*:*:*:*:* |
| redhat | enterprise_linux_for_real_time_for_nfv | 8.0 | cpe:2.3:o:redhat:enterprise_linux_for_real_time_for_nfv:8.0:*:*:*:*:*:*:* |
| redhat | enterprise_linux_for_real_time_for_nfv_tus | 8.0 | cpe:2.3:o:redhat:enterprise_linux_for_real_time_for_nfv_tus:8.0:*:*:*:*:*:*:* |
| redhat | enterprise_linux_for_real_time_for_nfv_tus | 8.2 | cpe:2.3:o:redhat:enterprise_linux_for_real_time_for_nfv_tus:8.2:*:*:*:*:*:*:* |
| redhat | enterprise_linux_for_real_time_tus | 8.0 | cpe:2.3:o:redhat:enterprise_linux_for_real_time_tus:8.0:*:*:*:*:*:*:* |
| redhat | enterprise_linux_for_real_time_tus | 8.2 | cpe:2.3:o:redhat:enterprise_linux_for_real_time_tus:8.2:*:*:*:*:*:*:* |
| redhat | enterprise_linux_server_aus | 8.2 | cpe:2.3:o:redhat:enterprise_linux_server_aus:8.2:*:*:*:*:*:*:* |
| redhat | enterprise_linux_server_aus | 8.4 | cpe:2.3:o:redhat:enterprise_linux_server_aus:8.4:*:*:*:*:*:*:* |
| redhat | enterprise_linux_server_for_power_little_endian_update_services_for_sap_solutions | 8.1 | cpe:2.3:o:redhat:enterprise_linux_server_for_power_little_endian_update_services_for_sap_solutions:8.1:*:*:*:*:*:*:* |
| redhat | enterprise_linux_server_for_power_little_endian_update_services_for_sap_solutions | 8.2 | cpe:2.3:o:redhat:enterprise_linux_server_for_power_little_endian_update_services_for_sap_solutions:8.2:*:*:*:*:*:*:* |
| redhat | enterprise_linux_server_for_power_little_endian_update_services_for_sap_solutions | 8.4 | cpe:2.3:o:redhat:enterprise_linux_server_for_power_little_endian_update_services_for_sap_solutions:8.4:*:*:*:*:*:*:* |
| redhat | enterprise_linux_server_tus | 8.2 | cpe:2.3:o:redhat:enterprise_linux_server_tus:8.2:*:*:*:*:*:*:* |
| redhat | enterprise_linux_server_tus | 8.4 | cpe:2.3:o:redhat:enterprise_linux_server_tus:8.4:*:*:*:*:*:*:* |
| redhat | enterprise_linux_server_update_services_for_sap_solutions | 8.1 | cpe:2.3:o:redhat:enterprise_linux_server_update_services_for_sap_solutions:8.1:*:*:*:*:*:*:* |
| redhat | enterprise_linux_server_update_services_for_sap_solutions | 8.2 | cpe:2.3:o:redhat:enterprise_linux_server_update_services_for_sap_solutions:8.2:*:*:*:*:*:*:* |
| redhat | enterprise_linux_server_update_services_for_sap_solutions | 8.4 | cpe:2.3:o:redhat:enterprise_linux_server_update_services_for_sap_solutions:8.4:*:*:*:*:*:*:* |
| netapp | h300s_firmware | — | cpe:2.3:o:netapp:h300s_firmware:-:*:*:*:*:*:*:* |
| netapp | h500s_firmware | — | cpe:2.3:o:netapp:h500s_firmware:-:*:*:*:*:*:*:* |
| netapp | h700s_firmware | — | cpe:2.3:o:netapp:h700s_firmware:-:*:*:*:*:*:*:* |
| netapp | h300e_firmware | — | cpe:2.3:o:netapp:h300e_firmware:-:*:*:*:*:*:*:* |
| netapp | h500e_firmware | — | cpe:2.3:o:netapp:h500e_firmware:-:*:*:*:*:*:*:* |
| netapp | h700e_firmware | — | cpe:2.3:o:netapp:h700e_firmware:-:*:*:*:*:*:*:* |
| netapp | h410s_firmware | — | cpe:2.3:o:netapp:h410s_firmware:-:*:*:*:*:*:*:* |
| netapp | h410c_firmware | — | cpe:2.3:o:netapp:h410c_firmware:-:*:*:*:*:*:*:* |
| netapp | h610c_firmware | — | cpe:2.3:o:netapp:h610c_firmware:-:*:*:*:*:*:*:* |
| netapp | h610s_firmware | — | cpe:2.3:o:netapp:h610s_firmware:-:*:*:*:*:*:*:* |
| netapp | h615c_firmware | — | cpe:2.3:o:netapp:h615c_firmware:-:*:*:*:*:*:*:* |
| URL | Tags |
|---|---|
| https://bugzilla.redhat.com/show_bug.cgi?id=1971651 | Issue Tracking Third Party Advisory |
| https://github.com/nrb547/kernel-exploitation/blob/main/cve-2021-3609/cve-2021-3609.md | Exploit Technical Description Third Party Advisory |
| https://github.com/torvalds/linux/commit/d5f9023fa61ee8b94f37a93f08e94b136cf1e463 | Patch Third Party Advisory |
| https://security.netapp.com/advisory/ntap-20220419-0004/ | Third Party Advisory |
| https://www.openwall.com/lists/oss-security/2021/06/19/1 | Mailing List Third Party Advisory |