Improper access control in BlueZ may allow an unauthenticated user to potentially enable information disclosure via adjacent access.
References
Link | Resource |
---|---|
http://packetstormsecurity.com/files/161229/Kernel-Live-Patch-Security-Notice-LSN-0074-1.html | Exploit Third Party Advisory VDB Entry |
http://packetstormsecurity.com/files/162131/Linux-Kernel-5.4-BleedingTooth-Remote-Code-Execution.html | Third Party Advisory VDB Entry |
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00435.html?wapkw=CVE-2020-12351 | Third Party Advisory |
Configurations
Configuration 1 (hide)
AND |
|
History
No history.
Information
Published : 2020-11-23 17:15
Updated : 2022-08-12 18:28
NVD link : CVE-2020-12352
Mitre link : CVE-2020-12352
CVE.ORG link : CVE-2020-12352
JSON object : View
Products Affected
linux
- linux_kernel
bluez
- bluez
CWE
CWE-909
Missing Initialization of Resource