CVE detail
CVE-2020-27524 — CVE-2020-27524
Published 2020-11-11 · Modified 2026-06-17 · Vendor audi · Product mmi_multiplayer · Source nvd
HIGH
severity
CVSS-derived band
0.0118
EPSS probability
exploitation probability, 30d
65.0%
EPSS percentile
percentile vs all CVEs
NOT LISTED
CISA KEV
known exploited catalog
Description
On Audi A7 MMI 2014 vehicles, the Bluetooth stack in Audi A7 MMI Multiplayer with version (N+R_CN_AU_P0395) mishandles %x and %s format string specifiers in a device name. This may lead to memory content leaks and potentially crash the services.
Remediation
No vendor-published fix data in our corpus for this CVE. Check the references below or the vendor's PSIRT / security advisories page.
References