UBUNTU-CVE-2020-25661

Source
https://ubuntu.com/security/CVE-2020-25661
Import Source
https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2020/UBUNTU-CVE-2020-25661.json
JSON Data
https://api.osv.dev/v1/vulns/UBUNTU-CVE-2020-25661
Upstream
Published
2020-11-05T21:15:00Z
Modified
2025-10-24T04:48:43Z
Severity
  • 8.8 (High) CVSS_V3 - CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
  • 7.5 (High) CVSS_V3 - CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
  • Ubuntu - negligible
Summary
[none]
Details

A Red Hat only CVE-2020-12351 regression issue was found in the way the Linux kernel's Bluetooth implementation handled L2CAP packets with A2MP CID. This flaw allows a remote attacker in an adjacent range to crash the system, causing a denial of service or potentially executing arbitrary code on the system by sending a specially crafted L2CAP packet. The highest threat from this vulnerability is to confidentiality, integrity, as well as system availability.

References

Affected packages

Ubuntu:18.04:LTS / linux-hwe

Package

Name
linux-hwe
Purl
pkg:deb/ubuntu/linux-hwe@5.3.0-76.72?arch=source&distro=bionic

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

4.*
4.18.0-13.14~18.04.1
4.18.0-14.15~18.04.1
4.18.0-15.16~18.04.1
4.18.0-16.17~18.04.1
4.18.0-17.18~18.04.1
4.18.0-18.19~18.04.1
4.18.0-20.21~18.04.1
4.18.0-21.22~18.04.1
4.18.0-22.23~18.04.1
4.18.0-24.25~18.04.1
4.18.0-25.26~18.04.1
5.*
5.0.0-23.24~18.04.1
5.0.0-25.26~18.04.1
5.0.0-27.28~18.04.1
5.0.0-29.31~18.04.1
5.0.0-31.33~18.04.1
5.0.0-32.34~18.04.2
5.0.0-35.38~18.04.1
5.0.0-36.39~18.04.1
5.0.0-37.40~18.04.1
5.3.0-26.28~18.04.1
5.3.0-28.30~18.04.1
5.3.0-40.32~18.04.1
5.3.0-42.34~18.04.1
5.3.0-45.37~18.04.1
5.3.0-46.38~18.04.1
5.3.0-51.44~18.04.2
5.3.0-53.47~18.04.1
5.3.0-59.53~18.04.1
5.3.0-61.55~18.04.1
5.3.0-62.56~18.04.1
5.3.0-64.58~18.04.1
5.3.0-65.59
5.3.0-66.60
5.3.0-67.61
5.3.0-68.63
5.3.0-69.65
5.3.0-70.66
5.3.0-72.68
5.3.0-73.69
5.3.0-74.70
5.3.0-75.71
5.3.0-76.72

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "block-modules-5.3.0-76-generic-di"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "crypto-modules-5.3.0-76-generic-di"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "fat-modules-5.3.0-76-generic-di"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "fb-modules-5.3.0-76-generic-di"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "firewire-core-modules-5.3.0-76-generic-di"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "floppy-modules-5.3.0-76-generic-di"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "fs-core-modules-5.3.0-76-generic-di"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "fs-secondary-modules-5.3.0-76-generic-di"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "input-modules-5.3.0-76-generic-di"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "ipmi-modules-5.3.0-76-generic-di"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "kernel-image-5.3.0-76-generic-di"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "linux-buildinfo-5.3.0-76-generic"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "linux-buildinfo-5.3.0-76-lowlatency"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "linux-cloud-tools-5.3.0-76-generic"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "linux-cloud-tools-5.3.0-76-lowlatency"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "linux-headers-5.3.0-76-generic"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "linux-headers-5.3.0-76-lowlatency"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "linux-hwe-cloud-tools-5.3.0-76"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "linux-hwe-headers-5.3.0-76"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "linux-hwe-tools-5.3.0-76"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "linux-hwe-udebs-generic"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "linux-image-5.3.0-76-generic"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "linux-image-5.3.0-76-lowlatency"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "linux-image-unsigned-5.3.0-76-generic"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "linux-image-unsigned-5.3.0-76-lowlatency"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "linux-modules-5.3.0-76-generic"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "linux-modules-5.3.0-76-lowlatency"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "linux-modules-extra-5.3.0-76-generic"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "linux-source-5.3.0"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "linux-tools-5.3.0-76-generic"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "linux-tools-5.3.0-76-lowlatency"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "md-modules-5.3.0-76-generic-di"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "message-modules-5.3.0-76-generic-di"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "mouse-modules-5.3.0-76-generic-di"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "multipath-modules-5.3.0-76-generic-di"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "nfs-modules-5.3.0-76-generic-di"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "nic-modules-5.3.0-76-generic-di"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "nic-pcmcia-modules-5.3.0-76-generic-di"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "nic-shared-modules-5.3.0-76-generic-di"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "nic-usb-modules-5.3.0-76-generic-di"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "parport-modules-5.3.0-76-generic-di"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "pata-modules-5.3.0-76-generic-di"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "pcmcia-modules-5.3.0-76-generic-di"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "pcmcia-storage-modules-5.3.0-76-generic-di"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "plip-modules-5.3.0-76-generic-di"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "ppp-modules-5.3.0-76-generic-di"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "sata-modules-5.3.0-76-generic-di"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "scsi-modules-5.3.0-76-generic-di"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "serial-modules-5.3.0-76-generic-di"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "storage-core-modules-5.3.0-76-generic-di"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "usb-modules-5.3.0-76-generic-di"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "virtio-modules-5.3.0-76-generic-di"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "vlan-modules-5.3.0-76-generic-di"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2020/UBUNTU-CVE-2020-25661.json"

Ubuntu:20.04:LTS / linux-raspi2

Package

Name
linux-raspi2
Purl
pkg:deb/ubuntu/linux-raspi2@5.4.0-1006.6?arch=source&distro=focal

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

5.*
5.3.0-1007.8
5.3.0-1014.16
5.3.0-1015.17
5.3.0-1017.19
5.4.0-1004.4
5.4.0-1006.6

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "5.4.0-1006.6",
            "binary_name": "linux-buildinfo-5.4.0-1006-raspi2"
        },
        {
            "binary_version": "5.4.0-1006.6",
            "binary_name": "linux-headers-5.4.0-1006-raspi2"
        },
        {
            "binary_version": "5.4.0-1006.6",
            "binary_name": "linux-image-5.4.0-1006-raspi2"
        },
        {
            "binary_version": "5.4.0-1006.6",
            "binary_name": "linux-modules-5.4.0-1006-raspi2"
        },
        {
            "binary_version": "5.4.0-1006.6",
            "binary_name": "linux-raspi2-headers-5.4.0-1006"
        },
        {
            "binary_version": "5.4.0-1006.6",
            "binary_name": "linux-raspi2-tools-5.4.0-1006"
        },
        {
            "binary_version": "5.4.0-1006.6",
            "binary_name": "linux-tools-5.4.0-1006-raspi2"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2020/UBUNTU-CVE-2020-25661.json"