Vulnerability
CVE-2022-20023
Component: BLUETOOTH
In Bluetooth, there is a possible application crash due to bluetooth flooding a device with LMP_AU_rand packet. This could lead to remote denial of service of bluetooth with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06198608; Issue ID: ALPS06198608.
Impact
Severity (Manufact.)
MEDIUM
Severity (NIST)
6.5
Severity (Android)
N/A
Chipsets
76
Devices
1625
Affected Hardware
Information reliability
The information on this website is intended to provide information on the big picture of chipset security and measure trends within the industry. Our information is obtained from several vantage points, checked for consistency, and automatically cross-referenced. However, this process may not always yield reliable information. Do not use the information on a particular vulnerability, chipset or device to verify your individual exposure in cases where inaccuracies are inacceptable, for instance to assess risks if you are a Politically Exposed Person.
Timeline
Introduced (est):
Jan 1, 2015
Reported:
Unknown
Advisory Published:
Jan 3, 2022
CVE Published:
Jan 4, 2022
Android Patch Level:
None