Wind River Support Network

HomeDefectsLIN1019-5668
Fixed

LIN1019-5668 : Security Advisory - pulseaudio - CVE-2020-15710

Created: Nov 19, 2020    Updated: Dec 8, 2020
Resolved Date: Dec 8, 2020
Found In Version: 10.19.45.1
Severity: Standard
Applicable for: Wind River Linux LTS 19
Component/s: Userspace

Description

Potential double free in Bluez 5 module of PulseAudio could allow a local attacker to leak memory or crash the program. The modargs variable may be freed twice in the fail condition in src/modules/bluetooth/module-bluez5-device.c and src/modules/bluetooth/module-bluez5-device.c. Fixed in 1:8.0-0ubuntu3.14.

CREATE(Triage):(User=admin) [CVE-2020-15710|https://nvd.nist.gov/vuln/detail/CVE-2020-15710]
Live chat
Online