CVE-2024-20139: Medium severity linuxfoundation Yocto vulnerability
In Bluetooth firmware, there is a possible firmware asssert due to improper handling of exceptional conditions. This could lead to local denial of service with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS09001270; Issue ID: MSV-1600.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-20139?
CVE-2024-20139 is considered a local denial of service vulnerability due to improper handling of exceptional conditions.
How do I fix CVE-2024-20139?
To fix CVE-2024-20139, apply the patch ID ALPS09001270 as soon as it is available.
What systems are affected by CVE-2024-20139?
CVE-2024-20139 affects specific versions of Linux Foundation Yocto, MediaTek Software Development Kit, and Google Android across several versions.
Is user interaction required to exploit CVE-2024-20139?
No, user interaction is not needed to exploit CVE-2024-20139.
What type of vulnerability is CVE-2024-20139?
CVE-2024-20139 is a firmware assertion issue that can lead to a local denial of service.