A use-after-free in gatt-database.c can occur when a client disconnects during D-Bus processing of a WriteValue call. External Reference: https://git.kernel.org/pub/scm/bluetooth/bluez.git/commit/?id=838c0dc7641e1c991c0f3027bf94bee4606012f8
Created bluez tracking bugs for this issue: Affects: fedora-all [bug 2020524]
Marking services "notaffected" as this issue is specific to Bluetooth.
Fixed in Fedora over a month ago with bluez-5.62-1.fc34 bluez-5.62-1.fc35
Bug is relevant to 5.61 none of our products (besides fedora) ship this version. https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-43400
This bug is now closed. Further updates for individual products will be reflected on the CVE page(s): https://access.redhat.com/security/cve/cve-2021-43400