Vulnerability

CVE-2022-20023

Component: BLUETOOTH
In Bluetooth, there is a possible application crash due to bluetooth flooding a device with LMP_AU_rand packet. This could lead to remote denial of service of bluetooth with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06198608; Issue ID: ALPS06198608.

Impact

Severity (Manufact.)

MEDIUM

Severity (NIST)

6.5

Severity (Android)

N/A

Chipsets

76

Devices

1625

Affected Hardware

NameAlso known asManufacturer
MT6580
MediaTek
MT6735P
MediaTek
MT6735M
MediaTek
MT6735
MediaTek
MT6737
MediaTek
MT6737T
MediaTek
MT6739
MediaTek
MT6753
MediaTek
MT6750S
MediaTek
MT6761V/WE
Helio A20
MediaTek
76 of 76 row(s) shown.

Rows per page

Page 1 of 8

Timeline

Introduced (est):
Jan 1, 2015
Reported:
Unknown
Advisory Published:
Jan 3, 2022
CVE Published:
Jan 4, 2022
Android Patch Level:
None
For more information and a detailed analysis of the data presented on this website, please see our paper, to be presented at NDSS'25.
Follow us on Twitter