PT-2020-6155 · Linux+2 · Linux Kernel+2

Published

2020-11-03

·

Updated

2023-02-12

·

CVE-2020-25662

CVSS v2.0

6.1

Medium

VectorAV:A/AC:L/Au:N/C:C/I:N/A:N
Name of the Vulnerable Software and Affected Versions Red Hat Enterprise Linux (affected versions not specified)
Description The issue is related to errors in handling certain AMP packets by the Bluetooth stack implementation in the Linux kernel. This can allow a remote attacker to gain unauthorized access to protected information. The flaw enables an attacker to leak small portions of stack memory by sending specially crafted AMP packets, posing a threat to data confidentiality.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Access Control

Information Disclosure

Improper Initialization

Weakness Enumeration

Related Identifiers

BDU:2021-03190
CESA-2020_4685
CESA-2020_4686
CVE-2020-25662
RHSA-2020:4685
RHSA-2020:4686
RHSA-2020_4685
RHSA-2020_4686

Affected Products

Centos
Linux Kernel
Red Hat