CVE Vulnerabilities

CVE-2020-0556

Published: Mar 12, 2020 | Modified: Apr 22, 2022
CVSS 3.x
7.1
HIGH
Source:
NVD
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:C/C:L/I:L/A:L
CVSS 2.x
5.8 MEDIUM
AV:A/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
7.1 MODERATE
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:C/C:L/I:L/A:L
Ubuntu
MEDIUM

Improper access control in subsystem for BlueZ before version 5.54 may allow an unauthenticated user to potentially enable escalation of privilege and denial of service via adjacent access

Affected Software

Name Vendor Start Version End Version
Bluez Bluez * 5.54 (excluding)
Red Hat Enterprise Linux 7 RedHat bluez-0:5.44-7.el7 *
Red Hat Enterprise Linux 8 RedHat bluez-0:5.50-4.el8 *
Red Hat Enterprise Linux 8 RedHat bluez-0:5.50-4.el8 *
Bluez Ubuntu bionic *
Bluez Ubuntu devel *
Bluez Ubuntu eoan *
Bluez Ubuntu trusty *
Bluez Ubuntu upstream *
Bluez Ubuntu xenial *

References