Do these 3 things before closing this tab:
1Scan for outdated or missing drivers - takes under a minute2Clear out junk files and repair common Windows errors3Fix the driver behind crashes, sound loss and screen glitchesBleedingTooth is the name given to three vulnerabilities in Linux’s Bluetooth subsystem, disclosed in 2020. On a vulnerable system, a nearby attacker could send Bluetooth traffic without requiring the user to click or approve a prompt; one flaw could cause a crash or potentially enable code execution. It did not make every Linux computer or Bluetooth device remotely exploitable. To address it now, check the security notice for your Linux distribution and release, install the applicable kernel update, and reboot if the vendor instructs you to.
What is BleedingTooth?
BleedingTooth is a label used by Google security researcher Andy Nguyen for a set of flaws in the Linux kernel’s host-side Bluetooth processing. It is not a defect in every Bluetooth radio, nor one vulnerability shared by all Linux installations. The bugs involved different parts of Bluetooth packet processing and had different potential effects.
“Zero-click” describes the absence of a required victim interaction in the attack described: the victim need not open a file, click a link, or approve a pairing prompt. It does not mean an attacker can exploit a machine over the internet from anywhere. The reported attack scenario involves an unauthenticated attacker within Bluetooth range, and exploitability depends on the affected system and its conditions. Google Security Research’s technical write-up demonstrated an exploit against x86-64 Ubuntu 20.04.1; that demonstration does not establish that every distribution, architecture, kernel build, or Bluetooth configuration is vulnerable.
What are the three main BleedingTooth vulnerabilities?
The three highlighted CVEs are distinct bugs. Their mechanisms and possible consequences should not be treated as interchangeable.
The Tool Desk
Outbyte Driver Updater FREEFix the driver behind crashes, sound loss and screen glitchesFind Drivers →Outbyte PC Repair FREERepair Windows errors before they cause bigger problemsFix Now →#1 Best Overall
- Read Before You Buy — No Video Output: These adapters support charging and USB 2.0 data transfer, but cannot transmit video signals. Except for standard USB webcams (which use USB data only), they are not compatible with HDMI/DisplayPort cables, video-capable USB-C hubs, or docking stations with video output.
- Convert USB-A Ports to USB-C: Designed to connect USB-C earphones, cables, flash drives, card readers, and other USB-C accessories to standard USB-A ports. Plug-and-play with no drivers or software required.
- Aluminum Alloy Housing: Built with a sturdy aluminum alloy shell that aids in heat dissipation and protects against daily wear and scratches. Designed to maintain a stable and secure connection.
- Compact & Travel-Friendly: The ultra-compact design allows the adapter to stay plugged into your device without blocking adjacent ports or adding bulk, reducing wear and tear on your original USB ports.
- 12-Month Warranty: Backed by a 12-month manufacturer warranty for peace of mind. Designed to meet strict quality control standards for reliable everyday performance.
| CVE and name | Bug and processing path | Potential impact and conditions |
|---|---|---|
| CVE-2020-12351 (BadKarma) | Type confusion in handling L2CAP packets associated with an A2MP channel identifier. | A nearby remote attacker could crash the system or potentially execute arbitrary code, according to Red Hat’s advisory. Red Hat’s RHEL-specific summary lists Bluetooth hardware present and enabled, proximity, and knowledge of the system’s MAC address among its stated conditions; those conditions are scoped to that RHEL summary. Red Hat’s advisory also notes RHEL 7.2 and 7.3 exceptions for this CVE. |
| CVE-2020-12352 (BadChoice) | Improper memory initialization while handling certain AMP packets, causing a stack-memory information leak. | Potential disclosure of small portions of kernel stack memory. This is an information leak, not the same code-execution effect described for CVE-2020-12351. |
| CVE-2020-24490 (BadVibes) | Heap buffer overflow while processing HCI extended Bluetooth advertising report events. | Red Hat says exploitation in its advisory’s context requires the system to be actively scanning. It is a separate parser flaw from the L2CAP/A2MP and AMP issues. |
The Linux Bluetooth stack processes controller events and data through the Host Controller Interface (HCI), transport layers such as L2CAP, and higher-level protocols including A2MP. These vulnerabilities were in the Linux kernel’s handling of that input; their presence does not by itself establish that a particular system is exposed.
Does BleedingTooth affect your Linux computer?
You cannot determine exposure from the word “Linux” or from a single kernel version alone. Distribution vendors backport security fixes and publish package-specific notices, so the relevant answer depends on your distribution, release, installed kernel package, and—in some cases—Bluetooth configuration.
Rank #2
- 5-in-1 USB-C Hub: Experience comprehensive connectivity featuring a Power Delivery input, two USB-A 2.0 ports, a USB-A 3.0 port, and an HDMI port. (Note: The USB-C power delivery input port is only for connecting an external wall charger to power your laptop and cannot power peripheral devices.)
- 90W Pass-Through Charging: Achieve optimal charging with 90W pass-through power to your laptop, supported by a total input of 100W, with the hub reserving 10W for operational efficiency. (Note: Wall charger not included.)
- Quick Data Transfers: Accelerate your productivity with rapid data transfers using a high-speed 5Gbps USB 3.0 port and two 480Mbps USB 2.0 ports.
- 4K HDMI Display: Enhance your visual experience with a hub capable of delivering 4K resolution at 30Hz in both mirror and extend modes. Please note that this hub is compatible with MacBook (macOS 12 and newer), Windows 10 and 11, ChromeOS, and laptops equipped with DP Alt Mode and Power Delivery. Note: This device is not compatible with Linux.
- What You Get: Anker USB-C Hub (5-in-1, 4K HDMI), welcome guide, 18-month warranty, and our friendly customer service.
- For Ubuntu, consult Canonical’s USN-4592-1 notice, published October 20, 2020. It lists affected and fixed package versions for specific Ubuntu releases and kernel packages; it is not a universal version test for all Ubuntu systems.
- For Red Hat Enterprise Linux, consult Red Hat’s BleedingTooth advisory, which covers specified RHEL 7 and 8 products and streams, with exceptions and package errata. Red Hat says CVE-2020-24490 affected its RHEL 8.3 GA kernels. The advisory also explains that the timing of RHEL 8.3 GA led to regression-tracking CVEs CVE-2020-25661 and CVE-2020-25662 for the first two issues.
- For other distributions, check that distribution’s security tracker for the CVE identifiers and the exact release you run. The existence of an upstream fix does not show whether a vendor package on your machine contains it.
The researcher reported that CVE-2020-24490 was fixed on the Linux mainline branch on July 30, 2020, and that fixes for CVE-2020-12352 and CVE-2020-12351 entered bluetooth-next on September 25, 2020. Those upstream dates describe patch history, not the current status of a distribution’s package. Intel’s INTEL-SA-00435, initially released October 13 and revised October 15, 2020, also recommends installing the linked kernel fixes.
How do you fix BleedingTooth?
- Identify your distribution and release. Use your system’s release information or system settings, then open the security tracker for that exact distribution and release.
- Search the vendor notice for the relevant CVE and kernel package. Check the package currently installed against the vendor’s affected and fixed package information; do not rely on a kernel version copied from a different distribution.
- Install the applicable vendor update. Use the normal package-management process recommended by your distribution. Red Hat recommends updating to new kernel packages as available; Ubuntu’s notice directs affected users to update.
- Reboot when the vendor directs. Ubuntu’s USN-4592-1 says a reboot is needed after a standard update for the necessary changes to take effect. Follow the instructions for your own system.
Older disclosure and fix dates explain how the issue was addressed, but they cannot confirm whether a machine is patched today. The distribution’s current package and security guidance are the practical basis for that decision.
PC Slower Than It Used to Be?
A free scan shows the junk files, broken settings and background clutter dragging Windows down - then fixes them in one click.Free scan · Windows 10 & 11Outdated Drivers Are Slowing You Down
One free scan finds every outdated or missing driver and matches the right update for your exact hardware.Free scan · exact hardware matchRank #3
- Sleek 7-in-1 USB-C Hub: Features an HDMI port, two USB-A 3.0 ports, and a USB-C data port, each providing 5Gbps transfer speeds. It also includes a USB-C PD input port for charging up to 100W and dual SD and TF card slots, all in a compact design.
- Flawless 4K@60Hz Video with HDMI: Delivers exceptional clarity and smoothness with its 4K@60Hz HDMI port, making it ideal for high-definition presentations and entertainment. (Note: Only the HDMI port supports video projection; the USB-C port is for data transfer only.)
- Double Up on Efficiency: The two USB-A 3.0 ports and a USB-C port support a fast 5Gbps data rate, significantly boosting your transfer speeds and improving productivity.
- Fast and Reliable 85W Charging: Offers high-capacity, speedy charging for laptops up to 85W, so you spend less time tethered to an outlet and more time being productive.
- What You Get: Anker USB-C Hub (7-in-1), welcome guide, 18-month warranty, and our friendly customer service.
Is disabling Bluetooth a useful temporary mitigation?
Red Hat documents disabling Bluetooth functionality as a mitigation, either by preventing Bluetooth kernel modules from loading or by disabling the functionality in hardware or BIOS. This is Red Hat’s guidance; the exact method and verification may differ on another distribution or device. Use your vendor’s instructions rather than assuming a Red Hat-specific procedure applies everywhere. Disabling Bluetooth reduces exposure while it is disabled, but it is not a replacement for installing the applicable kernel update.
Quick Recap
Best Value
- 5-in-1 Connectivity: Equipped with a 4K HDMI port, a 5 Gbps USB-C data port, two 5 Gbps USB-A ports, and a USB C 100W PD-IN port. Note: The USB C 100W PD-IN port supports only charging and does not support data transfer devices such as headphones or speakers.
- Powerful Pass-Through Charging: Supports up to 85W pass-through charging so you can power up your laptop while you use the hub. Note: Pass-through charging requires a charger (not included). Note: To achieve full power for iPad, we recommend using a 45W wall charger.
- Transfer Files in Seconds: Move files to and from your laptop at speeds of up to 5 Gbps via the USB-C and USB-A data ports. Note: The USB C 5Gbps Data port does not support video output.
- HD Display: Connect to the HDMI port to stream or mirror content to an external monitor in resolutions of up to 4K@30Hz. Note: The USB-C ports do not support video output.
- What You Get: Anker 332 USB-C Hub (5-in-1), welcome guide, our worry-free 18-month warranty, and friendly customer service.
Rank #4
- Dual Converters, Infinite Potential:Includes 2× USB C male to USB A female adapters and 2× USB A male to USB C female adapters. Perfect for a wide range of uses—tablets with Bluetooth keyboards, expand USB ports on macbook, and more. Two different converters for all your daily needs
- Next-Level 10Gbps & 3A Charging: No more slow 480Mbps, this usb to usb c adapter has a transfer speed of up to 10Gbps, allowing you to do more transferring in less time. This usb adapter fits both USB A and USB C charger, supporting up to 3A fast charging
- Upgraded Exquisite Craftsmanship: With an aluminum alloy housing and metal connector, the usbc to usb adapter is extremely durable and sturdy. Rigorously tested to withstand more than 10,000 times of plugging and unplugging, ensuring long-lasting performance
- Broad Compatible: The usb c to usb adapter widely supports all USB C/ USB A devices like laptops, tablets, cellphones, car chargers, and phone chargers. Such as compatible with MacBook Pro/Air 2023/2022, Thunderbolt 4/3 Devices,Apple MagSafe Watch 9/8/7/SE/Ultra, iPad Pro 2022/2021, Samsung Galaxy S23/S20/S10, and iPhone 17/16/15 Pro. Plug and play
- Please Note: To reach 10Gbps speed, keep the cable under 3.3 ft. For USB A Male to USB C adapters, try flipping the USB C connector. USB C Male to USB A adapters support bidirectional 10Gbps transfer within 3.3 ft
Product prices and availability are accurate as of the date/time indicated and are subject to change. Any price and availability information displayed on Amazon at the time of purchase will apply.

