Vulnerability in the Bluez Bluetooth stack
A vulnerability (CVE-2020-0556) has been discovered in the open Bluetooth stack BlueZ, which is used in Linux distributions and Chrome OS, potentially allowing an attacker to access the system. Due to improper access validation in the implementation of Bluetooth profiles HID and HOGP, the vulnerability permits denial of service or privilege escalation when connecting a malicious Bluetooth device without completing the device bonding process. The malicious Bluetooth device […]
