First published: Mon Oct 19 2020(Updated: )
Andy Nguyen discovered that the Bluetooth L2CAP implementation in the Linux kernel contained a type-confusion error. A physically proximate remote attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2020-12351) Andy Nguyen discovered that the Bluetooth A2MP implementation in the Linux kernel did not properly initialize memory in some situations. A physically proximate remote attacker could use this to expose sensitive information (kernel memory). (CVE-2020-12352)
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
ubuntu/linux-image-5.4.0-1022-raspi | <5.4.0-1022.25 | 5.4.0-1022.25 |
Ubuntu | =20.04 | |
All of | ||
ubuntu/linux-image-5.4.0-52-generic | <5.4.0-52.57 | 5.4.0-52.57 |
Ubuntu | =20.04 | |
All of | ||
ubuntu/linux-image-5.4.0-52-generic-lpae | <5.4.0-52.57 | 5.4.0-52.57 |
Ubuntu | =20.04 | |
All of | ||
ubuntu/linux-image-5.4.0-52-lowlatency | <5.4.0-52.57 | 5.4.0-52.57 |
Ubuntu | =20.04 | |
All of | ||
ubuntu/linux-image-generic | <5.4.0.52.55 | 5.4.0.52.55 |
Ubuntu | =20.04 | |
All of | ||
ubuntu/linux-image-generic-hwe-18.04 | <5.4.0.52.55 | 5.4.0.52.55 |
Ubuntu | =20.04 | |
All of | ||
ubuntu/linux-image-generic-hwe-18.04-edge | <5.4.0.52.55 | 5.4.0.52.55 |
Ubuntu | =20.04 | |
All of | ||
ubuntu/linux-image-generic-hwe-20.04 | <5.4.0.52.55 | 5.4.0.52.55 |
Ubuntu | =20.04 | |
All of | ||
ubuntu/linux-image-generic-lpae | <5.4.0.52.55 | 5.4.0.52.55 |
Ubuntu | =20.04 | |
All of | ||
ubuntu/linux-image-generic-lpae-hwe-18.04 | <5.4.0.52.55 | 5.4.0.52.55 |
Ubuntu | =20.04 | |
All of | ||
ubuntu/linux-image-generic-lpae-hwe-18.04-edge | <5.4.0.52.55 | 5.4.0.52.55 |
Ubuntu | =20.04 | |
All of | ||
ubuntu/linux-image-generic-lpae-hwe-20.04 | <5.4.0.52.55 | 5.4.0.52.55 |
Ubuntu | =20.04 | |
All of | ||
ubuntu/linux-image-lowlatency | <5.4.0.52.55 | 5.4.0.52.55 |
Ubuntu | =20.04 | |
All of | ||
ubuntu/linux-image-lowlatency-hwe-18.04 | <5.4.0.52.55 | 5.4.0.52.55 |
Ubuntu | =20.04 | |
All of | ||
ubuntu/linux-image-lowlatency-hwe-18.04-edge | <5.4.0.52.55 | 5.4.0.52.55 |
Ubuntu | =20.04 | |
All of | ||
ubuntu/linux-image-lowlatency-hwe-20.04 | <5.4.0.52.55 | 5.4.0.52.55 |
Ubuntu | =20.04 | |
All of | ||
ubuntu/linux-image-oem | <5.4.0.52.55 | 5.4.0.52.55 |
Ubuntu | =20.04 | |
All of | ||
ubuntu/linux-image-oem-osp1 | <5.4.0.52.55 | 5.4.0.52.55 |
Ubuntu | =20.04 | |
All of | ||
ubuntu/linux-image-raspi | <5.4.0.1022.57 | 5.4.0.1022.57 |
Ubuntu | =20.04 | |
All of | ||
ubuntu/linux-image-raspi-hwe-18.04 | <5.4.0.1022.57 | 5.4.0.1022.57 |
Ubuntu | =20.04 | |
All of | ||
ubuntu/linux-image-raspi-hwe-18.04-edge | <5.4.0.1022.57 | 5.4.0.1022.57 |
Ubuntu | =20.04 | |
All of | ||
ubuntu/linux-image-raspi2 | <5.4.0.1022.57 | 5.4.0.1022.57 |
Ubuntu | =20.04 | |
All of | ||
ubuntu/linux-image-raspi2-hwe-18.04 | <5.4.0.1022.57 | 5.4.0.1022.57 |
Ubuntu | =20.04 | |
All of | ||
ubuntu/linux-image-raspi2-hwe-18.04-edge | <5.4.0.1022.57 | 5.4.0.1022.57 |
Ubuntu | =20.04 | |
All of | ||
ubuntu/linux-image-virtual | <5.4.0.52.55 | 5.4.0.52.55 |
Ubuntu | =20.04 | |
All of | ||
ubuntu/linux-image-virtual-hwe-18.04 | <5.4.0.52.55 | 5.4.0.52.55 |
Ubuntu | =20.04 | |
All of | ||
ubuntu/linux-image-virtual-hwe-18.04-edge | <5.4.0.52.55 | 5.4.0.52.55 |
Ubuntu | =20.04 | |
All of | ||
ubuntu/linux-image-virtual-hwe-20.04 | <5.4.0.52.55 | 5.4.0.52.55 |
Ubuntu | =20.04 | |
All of | ||
ubuntu/linux-image-4.15.0-1090-snapdragon | <4.15.0-1090.99 | 4.15.0-1090.99 |
Ubuntu | =18.04 | |
All of | ||
ubuntu/linux-image-4.15.0-1100-oem | <4.15.0-1100.110 | 4.15.0-1100.110 |
Ubuntu | =18.04 | |
All of | ||
ubuntu/linux-image-4.15.0-122-generic | <4.15.0-122.124 | 4.15.0-122.124 |
Ubuntu | =18.04 | |
All of | ||
ubuntu/linux-image-4.15.0-122-generic-lpae | <4.15.0-122.124 | 4.15.0-122.124 |
Ubuntu | =18.04 | |
All of | ||
ubuntu/linux-image-4.15.0-122-lowlatency | <4.15.0-122.124 | 4.15.0-122.124 |
Ubuntu | =18.04 | |
All of | ||
ubuntu/linux-image-5.4.0-1022-raspi | <5.4.0-1022.25~18.04.1 | 5.4.0-1022.25~18.04.1 |
Ubuntu | =18.04 | |
All of | ||
ubuntu/linux-image-5.4.0-52-generic | <5.4.0-52.57~18.04.1 | 5.4.0-52.57~18.04.1 |
Ubuntu | =18.04 | |
All of | ||
ubuntu/linux-image-5.4.0-52-generic-lpae | <5.4.0-52.57~18.04.1 | 5.4.0-52.57~18.04.1 |
Ubuntu | =18.04 | |
All of | ||
ubuntu/linux-image-5.4.0-52-lowlatency | <5.4.0-52.57~18.04.1 | 5.4.0-52.57~18.04.1 |
Ubuntu | =18.04 | |
All of | ||
ubuntu/linux-image-generic | <4.15.0.122.109 | 4.15.0.122.109 |
Ubuntu | =18.04 | |
All of | ||
ubuntu/linux-image-generic-hwe-18.04 | <5.4.0.52.57~18.04.46 | 5.4.0.52.57~18.04.46 |
Ubuntu | =18.04 | |
All of | ||
ubuntu/linux-image-generic-lpae | <4.15.0.122.109 | 4.15.0.122.109 |
Ubuntu | =18.04 | |
All of | ||
ubuntu/linux-image-generic-lpae-hwe-18.04 | <5.4.0.52.57~18.04.46 | 5.4.0.52.57~18.04.46 |
Ubuntu | =18.04 | |
All of | ||
ubuntu/linux-image-lowlatency | <4.15.0.122.109 | 4.15.0.122.109 |
Ubuntu | =18.04 | |
All of | ||
ubuntu/linux-image-lowlatency-hwe-18.04 | <5.4.0.52.57~18.04.46 | 5.4.0.52.57~18.04.46 |
Ubuntu | =18.04 | |
All of | ||
ubuntu/linux-image-oem | <4.15.0.1100.104 | 4.15.0.1100.104 |
Ubuntu | =18.04 | |
All of | ||
ubuntu/linux-image-raspi-hwe-18.04 | <5.4.0.1022.26 | 5.4.0.1022.26 |
Ubuntu | =18.04 | |
All of | ||
ubuntu/linux-image-snapdragon | <4.15.0.1090.93 | 4.15.0.1090.93 |
Ubuntu | =18.04 | |
All of | ||
ubuntu/linux-image-snapdragon-hwe-18.04 | <5.4.0.52.57~18.04.46 | 5.4.0.52.57~18.04.46 |
Ubuntu | =18.04 | |
All of | ||
ubuntu/linux-image-virtual | <4.15.0.122.109 | 4.15.0.122.109 |
Ubuntu | =18.04 | |
All of | ||
ubuntu/linux-image-virtual-hwe-18.04 | <5.4.0.52.57~18.04.46 | 5.4.0.52.57~18.04.46 |
Ubuntu | =18.04 | |
All of | ||
ubuntu/linux-image-4.15.0-122-generic | <4.15.0-122.124~16.04.1 | 4.15.0-122.124~16.04.1 |
Ubuntu | =16.04 | |
All of | ||
ubuntu/linux-image-4.15.0-122-generic-lpae | <4.15.0-122.124~16.04.1 | 4.15.0-122.124~16.04.1 |
Ubuntu | =16.04 | |
All of | ||
ubuntu/linux-image-4.15.0-122-lowlatency | <4.15.0-122.124~16.04.1 | 4.15.0-122.124~16.04.1 |
Ubuntu | =16.04 | |
All of | ||
ubuntu/linux-image-generic-hwe-16.04 | <4.15.0.122.122 | 4.15.0.122.122 |
Ubuntu | =16.04 | |
All of | ||
ubuntu/linux-image-generic-hwe-16.04-edge | <4.15.0.122.122 | 4.15.0.122.122 |
Ubuntu | =16.04 | |
All of | ||
ubuntu/linux-image-generic-lpae-hwe-16.04 | <4.15.0.122.122 | 4.15.0.122.122 |
Ubuntu | =16.04 | |
All of | ||
ubuntu/linux-image-generic-lpae-hwe-16.04-edge | <4.15.0.122.122 | 4.15.0.122.122 |
Ubuntu | =16.04 | |
All of | ||
ubuntu/linux-image-lowlatency-hwe-16.04 | <4.15.0.122.122 | 4.15.0.122.122 |
Ubuntu | =16.04 | |
All of | ||
ubuntu/linux-image-lowlatency-hwe-16.04-edge | <4.15.0.122.122 | 4.15.0.122.122 |
Ubuntu | =16.04 | |
All of | ||
ubuntu/linux-image-oem | <4.15.0.122.122 | 4.15.0.122.122 |
Ubuntu | =16.04 | |
All of | ||
ubuntu/linux-image-virtual-hwe-16.04 | <4.15.0.122.122 | 4.15.0.122.122 |
Ubuntu | =16.04 | |
All of | ||
ubuntu/linux-image-virtual-hwe-16.04-edge | <4.15.0.122.122 | 4.15.0.122.122 |
Ubuntu | =16.04 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of USN-4591-1 is high due to the potential for a denial of service or arbitrary code execution.
To fix USN-4591-1, you should update to the recommended Linux kernel versions listed in the advisory.
USN-4591-1 addresses type-confusion errors in the Bluetooth L2CAP implementation leading to potential exploits.
The vulnerability affecting USN-4591-1 was discovered by researcher Andy Nguyen.
USN-4591-1 affects specific versions of Ubuntu Linux 20.04 and 18.04 using certain Linux kernel packages.