CVE-2020-15710
published 2020-11-19CVE-2020-15710: Potential double free in Bluez 5 module of PulseAudio could allow a local attacker to leak memory or crash the program. The modargs variable may be freed twice…
PriorityP423medium6.1CVSS 3.1
AVLACLPRLUINSUCLINAH
EPSS
0.29%
21.3th percentile
Potential double free in Bluez 5 module of PulseAudio could allow a local attacker to leak memory or crash the program. The modargs variable may be freed twice in the fail condition in src/modules/bluetooth/module-bluez5-device.c and src/modules/bluetooth/module-bluez5-device.c. Fixed in 1:8.0-0ubuntu3.14.
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| canonical | pulseaudio | >= 1:8.0 < 1:8.0-0ubuntu3.14 | 1:8.0-0ubuntu3.14 |
| debian | pulseaudio | — | — |
| pulseaudio | pulseaudio | >= 0 < 1:8.0-0ubuntu3.14 | 1:8.0-0ubuntu3.14 |
| pulseaudio_project | pulseaudio | — | — |
CVSS provenance
nvdv3.16.1MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:H
nvdv2.03.6LOWAV:L/AC:L/Au:N/C:P/I:N/A:P
osv6.1MEDIUM
vendor_debian5.3LOW
vendor_ubuntu5.3MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
PulseAudio vulnerability
vendor_ubuntu·2020-09-17·CVSS 5.3
CVE-2020-15710 [MEDIUM] PulseAudio vulnerability
Title: PulseAudio vulnerability
Summary: PulseAudio could be made to crash or run programs as your login if it
received specially crafted input.
Ratchanan Srirattanamet discovered that an Ubuntu-specific patch caused
PulseAudio to incorrectly handle memory under certain error conditions in the
Bluez 5 module. An attacker could use this issue to cause PulseAudio to crash,
resulting in a denial of service, or possibly execute arbitrary code.
(CVE-2020-15710)
Instructions: In general, a standard system update will make all the necessary changes.
Debian
CVE-2020-15710: pulseaudio - Potential double free in Bluez 5 module of PulseAudio could allow a local attack...
vendor_debian·2020·CVSS 5.3
CVE-2020-15710 [MEDIUM] CVE-2020-15710: pulseaudio - Potential double free in Bluez 5 module of PulseAudio could allow a local attack...
Potential double free in Bluez 5 module of PulseAudio could allow a local attacker to leak memory or crash the program. The modargs variable may be freed twice in the fail condition in src/modules/bluetooth/module-bluez5-device.c and src/modules/bluetooth/module-bluez5-device.c. Fixed in 1:8.0-0ubuntu3.14.
Scope: local
bookworm: resolved
bullseye: resolved
forky: resolved
sid: resolved
trixie: resolved
GHSA
GHSA-87cm-47xv-j472: Potential double free in Bluez 5 module of PulseAudio could allow a local attacker to leak memory or crash the program
ghsa_unreviewed·2022-05-24
CVE-2020-15710 [MEDIUM] CWE-415 GHSA-87cm-47xv-j472: Potential double free in Bluez 5 module of PulseAudio could allow a local attacker to leak memory or crash the program
Potential double free in Bluez 5 module of PulseAudio could allow a local attacker to leak memory or crash the program. The modargs variable may be freed twice in the fail condition in src/modules/bluetooth/module-bluez5-device.c and src/modules/bluetooth/module-bluez5-device.c. Fixed in 1:8.0-0ubuntu3.14.
OSV
pulseaudio vulnerability
osv·2020-09-17·CVSS 6.1
CVE-2020-15710 [MEDIUM] pulseaudio vulnerability
pulseaudio vulnerability
Ratchanan Srirattanamet discovered that an Ubuntu-specific patch caused
PulseAudio to incorrectly handle memory under certain error conditions in the
Bluez 5 module. An attacker could use this issue to cause PulseAudio to crash,
resulting in a denial of service, or possibly execute arbitrary code.
(CVE-2020-15710)
OSV
CVE-2020-15710: Potential double free in Bluez 5 module of PulseAudio could allow a local attacker to leak memory or crash the program
osv·2020-09-17·CVSS 6.1
CVE-2020-15710 [MEDIUM] CVE-2020-15710: Potential double free in Bluez 5 module of PulseAudio could allow a local attacker to leak memory or crash the program
Potential double free in Bluez 5 module of PulseAudio could allow a local attacker to leak memory or crash the program. The modargs variable may be freed twice in the fail condition in src/modules/bluetooth/module-bluez5-device.c and src/modules/bluetooth/module-bluez5-device.c. Fixed in 1:8.0-0ubuntu3.14.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2020-11-19
Published