{"id":"CVE-2021-3739","details":"A NULL pointer dereference flaw was found in the btrfs_rm_device function in fs/btrfs/volumes.c in the Linux Kernel, where triggering the bug requires ‘CAP_SYS_ADMIN’. This flaw allows a local attacker to crash the system or leak kernel internal information. The highest threat from this vulnerability is to system availability.","modified":"2026-04-16T00:02:28.843603447Z","published":"2022-03-10T17:43:01.463Z","related":["SUSE-SU-2021:3177-1","SUSE-SU-2021:3178-1","SUSE-SU-2021:3179-1","SUSE-SU-2021:3205-1","SUSE-SU-2021:3205-2","SUSE-SU-2021:3207-1","SUSE-SU-2021:3415-1","openSUSE-SU-2021:1271-1","openSUSE-SU-2021:3179-1","openSUSE-SU-2021:3205-1"],"references":[{"type":"ADVISORY","url":"https://ubuntu.com/security/CVE-2021-3739"},{"type":"ADVISORY","url":"https://security.netapp.com/advisory/ntap-20220407-0006/"},{"type":"FIX","url":"https://www.openwall.com/lists/oss-security/2021/08/25/3"},{"type":"FIX","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1997958"},{"type":"FIX","url":"https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=e4571b8c5e9ffa1e85c0c671995bd4dcc5c75091"},{"type":"FIX","url":"https://github.com/torvalds/linux/commit/e4571b8c5e9ffa1e85c0c671995bd4dcc5c75091"}],"affected":[{"database_specific":{"source":"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2021-3739.json","unresolved_ranges":[{"events":[{"introduced":"0"},{"last_affected":"5.14.20"}]},{"events":[{"introduced":"0"},{"last_affected":"34"}]}]}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H"}]}