PT-2020-6156 · Linux+2 · Linux Kernel+2

Petr Matousek

·

Published

2020-11-03

·

Updated

2023-02-12

·

CVE-2020-25661

CVSS v3.1

8.8

High

VectorAV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Red Hat Enterprise Linux (affected versions not specified)
Description The issue is related to the Bluetooth stack implementation in the Linux kernel, which allows access to data without type control. This can be exploited by a remote attacker to cause a denial of service or potentially execute arbitrary code on the system. The vulnerability can be triggered by sending a specially crafted L2CAP packet. The threat from this issue is to confidentiality, integrity, and system availability.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

DoS

Type Confusion

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2021-03191
CESA-2020_4685
CESA-2020_4686
CVE-2020-25661
RHSA-2020:4685
RHSA-2020:4686
RHSA-2020_4685
RHSA-2020_4686

Affected Products

Centos
Linux Kernel
Red Hat