First published: Wed May 06 2020(Updated: )
Eli Biham and Lior Neumann discovered that certain Bluetooth devices incorrectly validated key exchange parameters. An attacker could possibly use this issue to obtain sensitive information.
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
ubuntu/linux-firmware | <1.173.18 | 1.173.18 |
Ubuntu Linux | =18.04 | |
All of | ||
ubuntu/linux-firmware | <1.157.23 | 1.157.23 |
Ubuntu Linux | =16.04 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this Linux firmware vulnerability is USN-4351-1.
The Linux firmware vulnerability involves incorrect validation of key exchange parameters by certain Bluetooth devices.
An attacker could exploit this Linux firmware vulnerability to potentially obtain sensitive information.
This Linux firmware vulnerability affects Ubuntu Linux firmware versions 1.173.18 (for Ubuntu 18.04) and 1.157.23 (for Ubuntu 16.04).
To fix this Linux firmware vulnerability, update your Ubuntu Linux firmware to version 1.173.18 (for Ubuntu 18.04) or version 1.157.23 (for Ubuntu 16.04).