PT-2020-4787 · Intel+3 · Intel Wireless Bluetooth+3

Published

2020-10-11

·

Updated

2022-07-26

·

CVE-2020-12321

CVSS v3.1

8.8

High

VectorAV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: Intel(R) Wireless Bluetooth(R) products versions prior to 21.110
Description: The issue is related to improper buffer restriction in Intel(R) Wireless Bluetooth(R) products, which may allow an unauthenticated user to potentially enable escalation of privilege via adjacent access. This is due to a buffer overflow in memory, which can be exploited by a remote attacker to gain elevated privileges.
Recommendations: For versions prior to 21.110, update to version 21.110 or later to resolve the issue. As a temporary workaround, consider restricting access to adjacent devices to minimize the risk of exploitation.

Fix

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2020-05339
CESA-2020_5479
CESA-2021_0339
CVE-2020-12321
OESA-2022-1779
OPENSUSE-SU-2020:1960-1
OPENSUSE-SU-2020:1962-1
OPENSUSE-SU-2020_1960-1
OPENSUSE-SU-2020_1962-1
RHSA-2020:5416
RHSA-2020:5479
RHSA-2020_5479
RHSA-2021:0183
RHSA-2021:0339
RHSA-2021_0339
RHSA-2022:7887
SUSE-SU-2020:3330-1
SUSE-SU-2020:3349-1
SUSE-SU-2020:3353-1
SUSE-SU-2020:3354-1
SUSE-SU-2020_3330-1
SUSE-SU-2020_3349-1
SUSE-SU-2020_3353-1
SUSE-SU-2020_3354-1

Affected Products

Centos
Intel Wireless Bluetooth
Red Hat
Suse