USN-7179-4: Linux kernel (Xilinx ZynqMP) vulnerabilities
Andy Nguyen discovered that the Bluetooth L2CAP implementation in the Linux kernel contained a type-confusion error. A physically proximate remote attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2020-12351) Andy Nguyen discovered that the Bluetooth A2MP implementation in the Linux kernel did not properly initialize memory in some situations. A physically proximate remote attacker could use this to expose sensitive information (kernel memory). (CVE-2020-12352) Andy Nguyen discovered that the Bluetooth HCI event packet parser in the Linux kernel did not properly handle event advertisements of certain sizes, leading to a heap-based buffer overflow. A physically proximate remote attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2020-24490) Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems:
Affected Software
Event History
Child vulnerabilities
Contains the following vulnerabilities.
Frequently Asked Questions
What is the severity of USN-7179-4?
The severity of USN-7179-4 is considered high due to the potential for denial of service and execution of arbitrary code.
How do I fix USN-7179-4?
To fix USN-7179-4, update to the remedial kernel version 5.15.0-1041.45 on Ubuntu 22.04.
Who discovered the vulnerability in USN-7179-4?
The vulnerability in USN-7179-4 was discovered by researcher Andy Nguyen.
What type of vulnerability is USN-7179-4?
USN-7179-4 is a type-confusion error found in the Bluetooth L2CAP implementation of the Linux kernel.
Can USN-7179-4 allow remote code execution?
Yes, USN-7179-4 could potentially allow a physically proximate remote attacker to execute arbitrary code.