CVE-2020-12351: Linux Kernel

High severity, CVSS 8.8. EPSS: 7.7% chance of exploitation in the next 30 days.

Improper input validation in BlueZ may allow an unauthenticated user to potentially enable escalation of privilege via adjacent access.

Affected products

  • Linux Linux Kernel: from 4.7.7, before 4.9.240 (fixed in 4.9.240); from 4.10, before 4.14.202 (fixed in 4.14.202); from 4.15, before 4.19.152 (fixed in 4.19.152); from 4.20, before 5.4.72 (fixed in 5.4.72); from 5.5, before 5.8.16 (fixed in 5.8.16); version 5.9.0 only; …

Published 2020-11-23. Last modified 2026-06-17.