CVE Vulnerabilities

CVE-2020-0556

Published: Mar 12, 2020 | Modified: Nov 21, 2024
CVSS 3.x
7.1
HIGH
Source:
NVD
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:C/C:L/I:L/A:L
CVSS 2.x
5.8 MEDIUM
AV:A/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
7.1 MODERATE
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:C/C:L/I:L/A:L
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Improper access control in subsystem for BlueZ before version 5.54 may allow an unauthenticated user to potentially enable escalation of privilege and denial of service via adjacent access

Affected Software

NameVendorStart VersionEnd Version
BluezBluez*5.54 (excluding)
Red Hat Enterprise Linux 7RedHatbluez-0:5.44-7.el7*
Red Hat Enterprise Linux 8RedHatbluez-0:5.50-4.el8*
Red Hat Enterprise Linux 8RedHatbluez-0:5.50-4.el8*
BluezUbuntubionic*
BluezUbuntudevel*
BluezUbuntueoan*
BluezUbuntuesm-infra/bionic*
BluezUbuntuesm-infra/xenial*
BluezUbuntutrusty*
BluezUbuntuupstream*
BluezUbuntuxenial*

References