Skip to main content

Missing Initialization of Resource

CVE-2020-12352

Severity Medium
Score 6.5/10

Summary

Improper access control in BlueZ may allow an unauthenticated user to potentially enable information disclosure via adjacent access.

  • LOW
  • ADJACENT_NETWORK
  • NONE
  • UNCHANGED
  • NONE
  • NONE
  • HIGH
  • NONE

CWE-909 - Missing Initialization of Resource

The software does not initialize a critical resource.

References

Advisory Timeline

  • Published