{"schema_version":"1.7.5","id":"CVE-2020-0556","published":"2020-03-12T21:15:14.157Z","modified":"2026-07-08T05:56:30.156564149Z","related":["SUSE-SU-2020:0918-1","SUSE-SU-2020:3034-1","SUSE-SU-2020:3516-1","openSUSE-SU-2020:0479-1","openSUSE-SU-2020:0872-1","openSUSE-SU-2024:10657-1"],"details":"Improper access control in subsystem for BlueZ before version 5.54 may allow an unauthenticated user to potentially enable escalation of privilege and denial of service via adjacent access","affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/bluez/bluez","events":[{"introduced":"0"},{"fixed":"ab8a80b04f0ded7f9971994d0364a5c3bc92dd9f"}],"database_specific":{"cpe":"cpe:2.3:a:bluez:bluez:*:*:*:*:*:*:*:*","extracted_events":[{"introduced":"0"},{"fixed":"5.54"}],"source":"CPE_RANGE"}}],"versions":["5.53","5.52","5.51","5.50","5.49","5.48","5.47","5.46","5.45","5.44","5.43","5.42","5.41","5.40","5.39","5.38","5.37","5.36","5.35","5.34","5.33","5.32","5.31","5.30","5.29","5.28","5.27","5.26","5.25","5.24","5.23","5.22","5.21","5.20","5.19","5.18","5.17","5.16","5.15","5.14","5.13","5.12","5.11","5.10","5.9","5.8","5.7","5.6","5.5","5.4","5.3","5.2","5.1","5.0","4.101","4.100","4.99","4.98","4.97","4.96","4.95","4.94","4.93","4.92","4.91","4.90","4.89","4.88","4.87","4.86","4.85","4.84","4.83","4.82","4.81","4.80","4.79","4.78","4.77","4.76","4.75","4.74","4.73","4.72","4.71","4.70","4.69","4.68","4.67","4.66","4.65","4.64","4.63","4.62","4.61","4.60","4.59","4.58","4.57","4.56","4.55","4.54","4.53","4.52","4.51","4.50","4.49","4.48","4.47","4.46","4.45","4.44","4.43","4.42","4.41","4.40","4.39","4.38","4.37","4.36","4.35","4.34","4.33","4.32","4.31","4.30","4.29","4.28","4.27","4.26","4.25","4.24","4.23","4.22","4.21","4.20","4.19","4.18","4.17","4.16","4.15","4.14","4.13","4.12","4.11","4.10","4.9","4.8","4.7","4.6","4.5","4.2","4.1","4.0"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2020-0556.json"}}],"references":[{"type":"ADVISORY","url":"http://lists.opensuse.org/opensuse-security-announce/2020-04/msg00008.html"},{"type":"ADVISORY","url":"http://lists.opensuse.org/opensuse-security-announce/2020-06/msg00055.html"},{"type":"ADVISORY","url":"https://lists.debian.org/debian-lts-announce/2020/06/msg00008.html"},{"type":"ADVISORY","url":"https://security.gentoo.org/glsa/202003-49"},{"type":"ADVISORY","url":"https://usn.ubuntu.com/4311-1/"},{"type":"ADVISORY","url":"https://www.debian.org/security/2020/dsa-4647"},{"type":"FIX","url":"https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00352.html"}],"database_specific":{"unresolved_ranges":[{"cpes":["cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*","cpe:2.3:o:canonical:ubuntu_linux:18.04:*:*:*:lts:*:*:*","cpe:2.3:o:canonical:ubuntu_linux:19.10:*:*:*:*:*:*:*"],"extracted_events":[{"introduced":"16.04"},{"last_affected":"16.04"},{"introduced":"18.04"},{"last_affected":"18.04"},{"introduced":"19.10"},{"last_affected":"19.10"}],"source":"CPE_STRING","vendor_product":"canonical:ubuntu_linux"},{"cpes":["cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:*","cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*","cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*"],"extracted_events":[{"introduced":"8.0"},{"last_affected":"8.0"},{"introduced":"9.0"},{"last_affected":"9.0"},{"introduced":"10.0"},{"last_affected":"10.0"}],"source":"CPE_STRING","vendor_product":"debian:debian_linux"},{"cpes":["cpe:2.3:o:opensuse:leap:15.1:*:*:*:*:*:*:*","cpe:2.3:o:opensuse:leap:15.2:*:*:*:*:*:*:*"],"extracted_events":[{"introduced":"15.1"},{"last_affected":"15.1"},{"introduced":"15.2"},{"last_affected":"15.2"}],"source":"CPE_STRING","vendor_product":"opensuse:leap"}]},"severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:C/C:L/I:L/A:L"}]}