Medium severity5.3NVD Advisory· Published Nov 19, 2020· Updated Jun 17, 2026
CVE-2020-15710
CVE-2020-15710
Description
Potential double free in Bluez 5 module of PulseAudio could allow a local attacker to leak memory or crash the program. The modargs variable may be freed twice in the fail condition in src/modules/bluetooth/module-bluez5-device.c and src/modules/bluetooth/module-bluez5-device.c. Fixed in 1:8.0-0ubuntu3.14.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
18cpe:2.3:a:pulseaudio_project:pulseaudio:1\:8.0-0ubuntu1:*:*:*:*:*:*:*+ 15 more
- cpe:2.3:a:pulseaudio_project:pulseaudio:1\:8.0-0ubuntu1:*:*:*:*:*:*:*
- cpe:2.3:a:pulseaudio_project:pulseaudio:1\:8.0-0ubuntu2:*:*:*:*:*:*:*
- cpe:2.3:a:pulseaudio_project:pulseaudio:1\:8.0-0ubuntu3:*:*:*:*:*:*:*
- cpe:2.3:a:pulseaudio_project:pulseaudio:1\:8.0-0ubuntu3.1:*:*:*:*:*:*:*
- cpe:2.3:a:pulseaudio_project:pulseaudio:1\:8.0-0ubuntu3.2:*:*:*:*:*:*:*
- cpe:2.3:a:pulseaudio_project:pulseaudio:1\:8.0-0ubuntu3.3:*:*:*:*:*:*:*
- cpe:2.3:a:pulseaudio_project:pulseaudio:1\:8.0-0ubuntu3.4:*:*:*:*:*:*:*
- cpe:2.3:a:pulseaudio_project:pulseaudio:1\:8.0-0ubuntu3.5:*:*:*:*:*:*:*
- cpe:2.3:a:pulseaudio_project:pulseaudio:1\:8.0-0ubuntu3.6:*:*:*:*:*:*:*
- cpe:2.3:a:pulseaudio_project:pulseaudio:1\:8.0-0ubuntu3.7:*:*:*:*:*:*:*
- cpe:2.3:a:pulseaudio_project:pulseaudio:1\:8.0-0ubuntu3.8:*:*:*:*:*:*:*
- cpe:2.3:a:pulseaudio_project:pulseaudio:1\:8.0-0ubuntu3.9:*:*:*:*:*:*:*
- cpe:2.3:a:pulseaudio_project:pulseaudio:1\:8.0-0ubuntu3.10:*:*:*:*:*:*:*
- cpe:2.3:a:pulseaudio_project:pulseaudio:1\:8.0-0ubuntu3.11:*:*:*:*:*:*:*
- cpe:2.3:a:pulseaudio_project:pulseaudio:1\:8.0-0ubuntu3.12:*:*:*:*:*:*:*
- cpe:2.3:a:pulseaudio_project:pulseaudio:1\:8.0-0ubuntu4:*:*:*:*:*:*:*
- Canonical/PulseAudiov5Range: 1:8.0
Patches
Vulnerability mechanics
References
2- launchpad.net/bugs/1884738nvdIssue TrackingThird Party Advisory
- ubuntu.com/USN-4519-1nvdThird Party Advisory
News mentions
0No linked articles in our index yet.