What is CVE-2026-20495?
This is a potential permission bypass vulnerability in the Bluetooth driver due to a missing permission check, leading to local escalation of privilege with User execution privileges needed and no user interaction required. Affected users should apply the provided patch (Patch ID: WCNCR00488300) to mitigate the issue.
Azərbaycanca: Bluetooth sürücüsündə çatışmayan icazə yoxlanışı səbəbindən mümkün imtiyaz yüksəlməsi (local escalation of privilege) zəifliyidir. Bu, istifadəçi icrası ilə yerli imtiyazların artırılmasına gətirib çıxara bilər, lakin istifadəçi qarşılıqlı əlaqəsi tələb olunmur. Təsirə məruz qalan istifadəçilərə təqdim olunan yamağı (Patch ID: WCNCR00488300) tətbiq etmələri tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-862
FAQ2
In which component was CVE-2026-20495 discovered?
This vulnerability was discovered in the Bluetooth driver.
What action should be taken to mitigate CVE-2026-20495?
Affected users should apply the patch with ID WCNCR00488300.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.