Improper access control in BlueZ may allow an unauthenticated user to potentially enable information disclosure via adjacent access.
References
| Link | Resource |
|---|---|
| http://packetstormsecurity.com/files/161229/Kernel-Live-Patch-Security-Notice-LSN-0074-1.html | Exploit Third Party Advisory VDB Entry |
| http://packetstormsecurity.com/files/162131/Linux-Kernel-5.4-BleedingTooth-Remote-Code-Execution.html | Third Party Advisory VDB Entry |
| https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00435.html?wapkw=CVE-2020-12351 | Third Party Advisory |
| http://packetstormsecurity.com/files/161229/Kernel-Live-Patch-Security-Notice-LSN-0074-1.html | Exploit Third Party Advisory VDB Entry |
| http://packetstormsecurity.com/files/162131/Linux-Kernel-5.4-BleedingTooth-Remote-Code-Execution.html | Third Party Advisory VDB Entry |
| https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00435.html?wapkw=CVE-2020-12351 | Third Party Advisory |
Configurations
Configuration 1 (hide)
| AND |
|
History
21 Nov 2024, 04:59
| Type | Values Removed | Values Added |
|---|---|---|
| References | () http://packetstormsecurity.com/files/161229/Kernel-Live-Patch-Security-Notice-LSN-0074-1.html - Exploit, Third Party Advisory, VDB Entry | |
| References | () http://packetstormsecurity.com/files/162131/Linux-Kernel-5.4-BleedingTooth-Remote-Code-Execution.html - Third Party Advisory, VDB Entry | |
| References | () https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00435.html?wapkw=CVE-2020-12351 - Third Party Advisory |
12 Aug 2022, 18:28
| Type | Values Removed | Values Added |
|---|---|---|
| References | (MISC) http://packetstormsecurity.com/files/162131/Linux-Kernel-5.4-BleedingTooth-Remote-Code-Execution.html - Third Party Advisory, VDB Entry | |
| CWE | ||
| CPE | cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:* cpe:2.3:o:canonical:ubuntu_linux:20.04:*:*:*:lts:*:*:* cpe:2.3:a:bluez:bluez:-:*:*:*:*:*:*:* cpe:2.3:o:canonical:ubuntu_linux:18.04:*:*:*:lts:*:*:* cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:esm:*:*:* |
cpe:2.3:a:bluez:bluez:*:*:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* |
Information
Published : 2020-11-23 17:15
Updated : 2024-11-21 04:59
NVD link : CVE-2020-12352
Mitre link : CVE-2020-12352
CVE.ORG link : CVE-2020-12352
JSON object : View
Products Affected
bluez
- bluez
linux
- linux_kernel
CWE
CWE-909
Missing Initialization of Resource
