CVE-2020-26558

Tip / Sign in to post questions, reply, level up, and achieve exciting badges. Know more

cross mob
ToKo_4602001
Level 4
Level 4
50 sign-ins 25 replies posted 25 sign-ins

This inquiry is about the following post.

https://community.cypress.com/t5/ModusToolbox-Bluetooth-SDK/CYW20819-SDK2-9-Security/m-p/280640

 

I could not find the description about this CVE-2020-26558 issue in the "AIROC Bluetooth SDK 3.1 Release Notes.pdf".

Please let me know whether the issue has been fixed with SDK 3.1 or not.

 

Thanks.

0 Likes
1 Solution
DheerajPK_41
Moderator
Moderator
Moderator
750 replies posted 500 likes received 500 replies posted

Edited

Hi,

I confirmed internally. The fixes are already applied for CVE-2020-26558 and BTSDK3.1 have these fixes. Usually we share these info through our community. Seems like it is not yet updated. 

Thanks,

-Dheeraj 

View solution in original post

0 Likes
4 Replies
DheerajPK_41
Moderator
Moderator
Moderator
750 replies posted 500 likes received 500 replies posted

Edited

Hi,

I confirmed internally. The fixes are already applied for CVE-2020-26558 and BTSDK3.1 have these fixes. Usually we share these info through our community. Seems like it is not yet updated. 

Thanks,

-Dheeraj 

0 Likes

Thank you for this answer.

If possible we'd like Infineon/Cypress to add the information to some document like release note.

 

Regards,

0 Likes
DheerajPK_41
Moderator
Moderator
Moderator
750 replies posted 500 likes received 500 replies posted

Sure,

We usually publish these information either through Release note or through Community.  I will share the feedback to the concerned team internally to speed up the work to document it in the Community (Modustoolbox Bluetooth SDK page).

Thanks,

-Dheeraj 

0 Likes

Thank you for your support!

0 Likes