FlawAtlas
Search the atlas
CVE-2020-26555 Not scored

CVE-2020-26555

In btm_sec_pin_code_request of btm_sec.cc, there is a possible bypass of Bluetooth pairing pin-code due to improperly used crypto. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.

Exploit probability 0.9%
Published June 1, 2021
Required by Not available
Last source change August 19, 2026

02 / AFFECTED SOFTWARE

Affected packages

Android platform/system/bt

4 explicit affected versions

04 / EVIDENCE

Source records

Open Source Vulnerabilities ASB-A-174626251

In btm_sec_pin_code_request of btm_sec.cc, there is a possible bypass of Bluetooth pairing pin-code due to improperly used crypto. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.

View original source

05 / REFERENCES

Further evidence