7.2
CVSSv2

CVE-2020-35499

Published: 19/02/2021 Updated: 28/07/2023
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
CVSS v3 Base Score: 6.7 | Impact Score: 5.9 | Exploitability Score: 0.8
VMScore: 641
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

A NULL pointer dereference flaw in Linux kernel versions before 5.11 may be seen if sco_sock_getsockopt function in net/bluetooth/sco.c do not have a sanity check for a socket connection, when using BT_SNDMTU/BT_RCVMTU for SCO sockets. This could allow a local attacker with a special user privilege to crash the system (DOS) or leak kernel internal information.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

linux linux kernel

Vendor Advisories

A security issue was found in the Linux kernel before version 5104 A NULL pointer dereference flaw may be seen as the sco_sock_getsockopt function in net/bluetooth/scoc does not have a sanity check for a socket connection when using BT_SNDMTU/BT_RCVMTU for SCO sockets This could allow a local attacker with special user privileges to crash the ...