Severity
8.8HIGH
EPSS
0.3%
top 48.09%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedNov 12
Latest updateMay 24

Description

Improper buffer restriction in some Intel(R) Wireless Bluetooth(R) products before version 21.110 may allow an unauthenticated user to potentially enable escalation of privilege via adjacent access.

CVSS vector

CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 2.8 | Impact: 5.9

Affected Packages12 packages

Patches

🔴Vulnerability Details

2
GHSA
GHSA-mmx9-f32w-9hqf: Improper buffer restriction in some Intel(R) Wireless Bluetooth(R) products before version 212022-05-24
CVEList
CVE-2020-12321: Improper buffer restriction in some Intel(R) Wireless Bluetooth(R) products before version 212020-11-12

📋Vendor Advisories

1
Red Hat
hardware: buffer overflow in bluetooth firmware2020-11-10

💬Community

1
Bugzilla
CVE-2020-12321 hardware: buffer overflow in bluetooth firmware2020-11-02