CVE-2019-10207
MEDIUM 5.5EPSS 0.9%
A flaw was found in the Linux kernel's Bluetooth implementation of UART, all versions kernel 3.x.x before 4.18.0 and kernel 5.x.x. An attacker with local access and write permissions to the Bluetooth hardware could use this flaw to issue a specially crafted ioctl function call and cause the system to crash.
- CVSS v3.1
- 5.5 MEDIUM
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H - CVSS v3.0
- 4.7 MEDIUM
CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H - CVSS v2.0
- 2.1 LOW
AV:L/AC:L/Au:N/C:N/I:N/A:P - EPSS
- 0.88% chance of exploitation in the next 30 days, 57th percentile
- Published
- 2019-11-25
- Updated
- 2024-08-04
Proof-of-concept exploits (1)
- butterflyhack/CVE-2019-1020720★ · 2022-03-27