An issue was discovered in the Linux kernel before 5.8.1. net/bluetooth/hcievent.c has a slab out-of-bounds read in hciextendedinquiryresult_evt, aka CID-51c19bf3d5cf.
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2020-36386.json"
[
{
"signature_version": "v1",
"deprecated": false,
"digest": {
"line_hashes": [
"304427121633765601981824137027705428610",
"269480764489302321755019339739731016125",
"107180512259348376345337795894796045381",
"246616060110650241380825846898575666859"
],
"threshold": 0.9
},
"signature_type": "Line",
"id": "CVE-2020-36386-4c13fd9d",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@51c19bf3d5cfaa66571e4b88ba2a6f6295311101",
"target": {
"file": "net/bluetooth/hci_event.c"
}
},
{
"signature_version": "v1",
"deprecated": false,
"digest": {
"length": 1091.0,
"function_hash": "251443555853494551544564850284320691264"
},
"signature_type": "Function",
"id": "CVE-2020-36386-62c9cb47",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@51c19bf3d5cfaa66571e4b88ba2a6f6295311101",
"target": {
"function": "hci_extended_inquiry_result_evt",
"file": "net/bluetooth/hci_event.c"
}
}
]