yocto ▾
›
master ▾
›
vulnerability
›
CVE-2020-24490
Component Overview
Vulnerability Overview
Name
CVE-2020-24490
Source
NVD (
link
)
Debian (
link
)
Description
Improper buffer restrictions in BlueZ may allow an unauthenticated user to potentially enable denial of service via adjacent access. This affects all Linux kernel versions that support BlueZ.
CWEs
Published Date
Feb 2, 2021
Updated Date
Jun 17, 2026
Workaround
-
Advisories
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00435.html
Patch
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00435.html
Patch
Analysis
#
Affected Component
Analysis
bluez5
False Positive
Vulnerability Ratings
#
6.5
CVSSv31
3.3
CVSSv2
Others affected components
#
Name
Project
Project Version
Version
Status
bluez5
yocto
kirkstone
5.65
Not Affected
bluez5
yocto
scarthgap
5.72
False Positive