Improper access control in BlueZ may allow an unauthenticated user to potentially enable information disclosure via adjacent access.
References
| Link | Resource |
|---|---|
| https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00435.html?wapkw=CVE-2020-12351 | Third Party Advisory |
| http://packetstormsecurity.com/files/161229/Kernel-Live-Patch-Security-Notice-LSN-0074-1.html | Exploit Third Party Advisory VDB Entry |
| http://packetstormsecurity.com/files/162131/Linux-Kernel-5.4-BleedingTooth-Remote-Code-Execution.html |
Configurations
Configuration 1 (hide)
| AND |
|
Configuration 2 (hide)
|
Information
Published : 2020-11-23 17:15
Updated : 2021-07-21 11:39
NVD link : CVE-2020-12352
Mitre link : CVE-2020-12352
JSON object : View
Products Affected
linux
- linux_kernel
canonical
- ubuntu_linux
bluez
- bluez
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor
