7.1

CVE-2020-0556

Improper access control in subsystem for BlueZ before version 5.54 may allow an unauthenticated user to potentially enable escalation of privilege and denial of service via adjacent access
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Bluez ≫ Bluez Version < 5.54
Canonical ≫ Ubuntu Linux Version 16.04 SwEdition lts
Canonical ≫ Ubuntu Linux Version 18.04 SwEdition lts
Canonical ≫ Ubuntu Linux Version 19.10
Debian ≫ Debian Linux Version 8.0
Debian ≫ Debian Linux Version 9.0
Debian ≫ Debian Linux Version 10.0
Opensuse ≫ Leap Version 15.1
Opensuse ≫ Leap Version 15.2
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 1.04% 0.614
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 7.1 2.8 3.7
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:C/C:L/I:L/A:L
NIST 5.8 6.5 6.4
AV:A/AC:L/Au:N/C:P/I:P/A:P
Es wurden noch keine Informationen zu CWE veröffentlicht.
https://usn.ubuntu.com/4311-1/
Third Party Advisory
http://lists.opensuse.org/opensuse-security-announce/2020-04/msg00008.html
Third Party Advisory
Mailing List
http://lists.opensuse.org/opensuse-security-announce/2020-06/msg00055.html
Third Party Advisory
Mailing List
https://lists.debian.org/debian-lts-announce/2020/06/msg00008.html
Third Party Advisory
Mailing List
https://security.gentoo.org/glsa/202003-49
Third Party Advisory
https://www.debian.org/security/2020/dsa-4647
Third Party Advisory
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00352.html
Patch
Third Party Advisory