UBUNTU-CVE-2020-25662

Source
https://ubuntu.com/security/CVE-2020-25662
Import Source
https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2020/UBUNTU-CVE-2020-25662.json
JSON Data
https://api.osv.dev/v1/vulns/UBUNTU-CVE-2020-25662
Upstream
Published
2020-11-05T21:15:00Z
Modified
2025-10-24T04:48:43Z
Severity
  • 6.5 (Medium) CVSS_V3 - CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N CVSS Calculator
  • 5.3 (Medium) CVSS_V3 - CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N CVSS Calculator
  • Ubuntu - negligible
Summary
[none]
Details

A Red Hat only CVE-2020-12352 regression issue was found in the way the Linux kernel's Bluetooth stack implementation handled the initialization of stack memory when handling certain AMP packets. This flaw allows a remote attacker in an adjacent range to leak small portions of stack memory on the system by sending specially crafted AMP packets. The highest threat from this vulnerability is to data confidentiality.

References

Affected packages

Ubuntu:18.04:LTS / linux-hwe

Package

Name
linux-hwe
Purl
pkg:deb/ubuntu/linux-hwe@5.3.0-76.72?arch=source&distro=bionic

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

4.*
4.18.0-13.14~18.04.1
4.18.0-14.15~18.04.1
4.18.0-15.16~18.04.1
4.18.0-16.17~18.04.1
4.18.0-17.18~18.04.1
4.18.0-18.19~18.04.1
4.18.0-20.21~18.04.1
4.18.0-21.22~18.04.1
4.18.0-22.23~18.04.1
4.18.0-24.25~18.04.1
4.18.0-25.26~18.04.1
5.*
5.0.0-23.24~18.04.1
5.0.0-25.26~18.04.1
5.0.0-27.28~18.04.1
5.0.0-29.31~18.04.1
5.0.0-31.33~18.04.1
5.0.0-32.34~18.04.2
5.0.0-35.38~18.04.1
5.0.0-36.39~18.04.1
5.0.0-37.40~18.04.1
5.3.0-26.28~18.04.1
5.3.0-28.30~18.04.1
5.3.0-40.32~18.04.1
5.3.0-42.34~18.04.1
5.3.0-45.37~18.04.1
5.3.0-46.38~18.04.1
5.3.0-51.44~18.04.2
5.3.0-53.47~18.04.1
5.3.0-59.53~18.04.1
5.3.0-61.55~18.04.1
5.3.0-62.56~18.04.1
5.3.0-64.58~18.04.1
5.3.0-65.59
5.3.0-66.60
5.3.0-67.61
5.3.0-68.63
5.3.0-69.65
5.3.0-70.66
5.3.0-72.68
5.3.0-73.69
5.3.0-74.70
5.3.0-75.71
5.3.0-76.72

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "block-modules-5.3.0-76-generic-di"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "crypto-modules-5.3.0-76-generic-di"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "fat-modules-5.3.0-76-generic-di"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "fb-modules-5.3.0-76-generic-di"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "firewire-core-modules-5.3.0-76-generic-di"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "floppy-modules-5.3.0-76-generic-di"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "fs-core-modules-5.3.0-76-generic-di"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "fs-secondary-modules-5.3.0-76-generic-di"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "input-modules-5.3.0-76-generic-di"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "ipmi-modules-5.3.0-76-generic-di"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "kernel-image-5.3.0-76-generic-di"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "linux-buildinfo-5.3.0-76-generic"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "linux-buildinfo-5.3.0-76-lowlatency"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "linux-cloud-tools-5.3.0-76-generic"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "linux-cloud-tools-5.3.0-76-lowlatency"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "linux-headers-5.3.0-76-generic"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "linux-headers-5.3.0-76-lowlatency"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "linux-hwe-cloud-tools-5.3.0-76"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "linux-hwe-headers-5.3.0-76"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "linux-hwe-tools-5.3.0-76"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "linux-hwe-udebs-generic"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "linux-image-5.3.0-76-generic"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "linux-image-5.3.0-76-lowlatency"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "linux-image-unsigned-5.3.0-76-generic"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "linux-image-unsigned-5.3.0-76-lowlatency"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "linux-modules-5.3.0-76-generic"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "linux-modules-5.3.0-76-lowlatency"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "linux-modules-extra-5.3.0-76-generic"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "linux-source-5.3.0"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "linux-tools-5.3.0-76-generic"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "linux-tools-5.3.0-76-lowlatency"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "md-modules-5.3.0-76-generic-di"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "message-modules-5.3.0-76-generic-di"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "mouse-modules-5.3.0-76-generic-di"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "multipath-modules-5.3.0-76-generic-di"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "nfs-modules-5.3.0-76-generic-di"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "nic-modules-5.3.0-76-generic-di"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "nic-pcmcia-modules-5.3.0-76-generic-di"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "nic-shared-modules-5.3.0-76-generic-di"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "nic-usb-modules-5.3.0-76-generic-di"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "parport-modules-5.3.0-76-generic-di"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "pata-modules-5.3.0-76-generic-di"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "pcmcia-modules-5.3.0-76-generic-di"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "pcmcia-storage-modules-5.3.0-76-generic-di"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "plip-modules-5.3.0-76-generic-di"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "ppp-modules-5.3.0-76-generic-di"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "sata-modules-5.3.0-76-generic-di"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "scsi-modules-5.3.0-76-generic-di"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "serial-modules-5.3.0-76-generic-di"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "storage-core-modules-5.3.0-76-generic-di"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "usb-modules-5.3.0-76-generic-di"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "virtio-modules-5.3.0-76-generic-di"
        },
        {
            "binary_version": "5.3.0-76.72",
            "binary_name": "vlan-modules-5.3.0-76-generic-di"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2020/UBUNTU-CVE-2020-25662.json"

Ubuntu:20.04:LTS / linux-raspi2

Package

Name
linux-raspi2
Purl
pkg:deb/ubuntu/linux-raspi2@5.4.0-1006.6?arch=source&distro=focal

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

5.*
5.3.0-1007.8
5.3.0-1014.16
5.3.0-1015.17
5.3.0-1017.19
5.4.0-1004.4
5.4.0-1006.6

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "5.4.0-1006.6",
            "binary_name": "linux-buildinfo-5.4.0-1006-raspi2"
        },
        {
            "binary_version": "5.4.0-1006.6",
            "binary_name": "linux-headers-5.4.0-1006-raspi2"
        },
        {
            "binary_version": "5.4.0-1006.6",
            "binary_name": "linux-image-5.4.0-1006-raspi2"
        },
        {
            "binary_version": "5.4.0-1006.6",
            "binary_name": "linux-modules-5.4.0-1006-raspi2"
        },
        {
            "binary_version": "5.4.0-1006.6",
            "binary_name": "linux-raspi2-headers-5.4.0-1006"
        },
        {
            "binary_version": "5.4.0-1006.6",
            "binary_name": "linux-raspi2-tools-5.4.0-1006"
        },
        {
            "binary_version": "5.4.0-1006.6",
            "binary_name": "linux-tools-5.4.0-1006-raspi2"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2020/UBUNTU-CVE-2020-25662.json"