"BleedingTooth" – zero-click RCE in Linux Bluetooth:
https://twitter.com/theflow0/status/1316071793707364353
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00435.html
– According to Intel, all Linux kernels with BlueZ support prior to 5.9 are affected.
– Intel recommends updating the Linux kernel to version 5.9 or newer.
– BlueZ is the canonical implementation of the Bluetooth protocol stack.
– CVE-2020-12351, CVE-2020-12352, CVE-2020-24490.