Show plain JSON{"id": "CVE-2020-15710", "metrics": {"cvssMetricV2": [{"type": "Primary", "source": "nvd@nist.gov", "cvssData": {"version": "2.0", "baseScore": 3.6, "accessVector": "LOCAL", "vectorString": "AV:L/AC:L/Au:N/C:P/I:N/A:P", "authentication": "NONE", "integrityImpact": "NONE", "accessComplexity": "LOW", "availabilityImpact": "PARTIAL", "confidentialityImpact": "PARTIAL"}, "acInsufInfo": false, "impactScore": 4.9, "baseSeverity": "LOW", "obtainAllPrivilege": false, "exploitabilityScore": 3.9, "obtainUserPrivilege": false, "obtainOtherPrivilege": false, "userInteractionRequired": false}], "cvssMetricV31": [{"type": "Secondary", "source": "security@ubuntu.com", "cvssData": {"scope": "UNCHANGED", "version": "3.1", "baseScore": 5.3, "attackVector": "LOCAL", "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:L/I:N/A:H", "integrityImpact": "NONE", "userInteraction": "NONE", "attackComplexity": "HIGH", "availabilityImpact": "HIGH", "privilegesRequired": "LOW", "confidentialityImpact": "LOW"}, "impactScore": 4.2, "exploitabilityScore": 1.0}, {"type": "Primary", "source": "nvd@nist.gov", "cvssData": {"scope": "UNCHANGED", "version": "3.1", "baseScore": 6.1, "attackVector": "LOCAL", "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:H", "integrityImpact": "NONE", "userInteraction": "NONE", "attackComplexity": "LOW", "availabilityImpact": "HIGH", "privilegesRequired": "LOW", "confidentialityImpact": "LOW"}, "impactScore": 4.2, "exploitabilityScore": 1.8}]}, "published": "2020-11-19T03:15:12.490", "references": [{"url": "https://launchpad.net/bugs/1884738", "tags": ["Issue Tracking", "Third Party Advisory"], "source": "security@ubuntu.com"}, {"url": "https://ubuntu.com/USN-4519-1", "tags": ["Third Party Advisory"], "source": "security@ubuntu.com"}, {"url": "https://launchpad.net/bugs/1884738", "tags": ["Issue Tracking", "Third Party Advisory"], "source": "af854a3a-2127-422b-91ae-364da2661108"}, {"url": "https://ubuntu.com/USN-4519-1", "tags": ["Third Party Advisory"], "source": "af854a3a-2127-422b-91ae-364da2661108"}], "vulnStatus": "Modified", "weaknesses": [{"type": "Secondary", "source": "security@ubuntu.com", "description": [{"lang": "en", "value": "CWE-415"}]}, {"type": "Primary", "source": "nvd@nist.gov", "description": [{"lang": "en", "value": "CWE-415"}]}], "descriptions": [{"lang": "en", "value": "Potential double free in Bluez 5 module of PulseAudio could allow a local attacker to leak memory or crash the program. The modargs variable may be freed twice in the fail condition in src/modules/bluetooth/module-bluez5-device.c and src/modules/bluetooth/module-bluez5-device.c. Fixed in 1:8.0-0ubuntu3.14."}, {"lang": "es", "value": "Una potencial doble liberaci\u00f3n en el m\u00f3dulo Bluez 5 de PulseAudio, podr\u00eda permitir a un atacante local perder memoria o bloquear el programa. La variable modargs puede ser liberada dos veces en una condici\u00f3n de fallo en los archivos src/modules/bluetooth/module-bluez5-device.c y src/modules/bluetooth/module-bluez5-device.c. Corregido en la versi\u00f3n 1:8.0-0ubuntu3.14"}], "lastModified": "2024-11-21T05:06:04.507", "configurations": [{"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:a:pulseaudio_project:pulseaudio:1\\:8.0-0ubuntu1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "00CC8F36-C473-404C-8B54-2CDA3EB9180A"}, {"criteria": "cpe:2.3:a:pulseaudio_project:pulseaudio:1\\:8.0-0ubuntu2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EC35761D-6279-4DCA-A3B8-580C80046B9F"}, {"criteria": "cpe:2.3:a:pulseaudio_project:pulseaudio:1\\:8.0-0ubuntu3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4BD16C0A-DBDE-456B-8B9B-1C3590238A3C"}, {"criteria": "cpe:2.3:a:pulseaudio_project:pulseaudio:1\\:8.0-0ubuntu3.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E425B2A1-BD8E-4693-A1DF-CE2466A1F80C"}, {"criteria": "cpe:2.3:a:pulseaudio_project:pulseaudio:1\\:8.0-0ubuntu3.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "911D2FFB-E039-4C17-A65F-333B3C6B2476"}, {"criteria": "cpe:2.3:a:pulseaudio_project:pulseaudio:1\\:8.0-0ubuntu3.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D1EE6A26-3775-45F9-97A5-F81176FAB562"}, {"criteria": "cpe:2.3:a:pulseaudio_project:pulseaudio:1\\:8.0-0ubuntu3.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7B79DF2D-A0EE-4217-AE52-8930C3FBC46B"}, {"criteria": "cpe:2.3:a:pulseaudio_project:pulseaudio:1\\:8.0-0ubuntu3.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "67A12CDC-8143-4966-9B16-95B307E58574"}, {"criteria": "cpe:2.3:a:pulseaudio_project:pulseaudio:1\\:8.0-0ubuntu3.6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EA4EDC9B-91CF-4EFA-AF01-35636B5984F2"}, {"criteria": "cpe:2.3:a:pulseaudio_project:pulseaudio:1\\:8.0-0ubuntu3.7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BE2F59BE-8996-4839-AE1A-4F1F60F9DD85"}, {"criteria": "cpe:2.3:a:pulseaudio_project:pulseaudio:1\\:8.0-0ubuntu3.8:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A85FD526-9F96-41DC-AC98-5861B44DD0CC"}, {"criteria": "cpe:2.3:a:pulseaudio_project:pulseaudio:1\\:8.0-0ubuntu3.9:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B7C5C865-1048-46DB-AB22-893D1268CFA1"}, {"criteria": "cpe:2.3:a:pulseaudio_project:pulseaudio:1\\:8.0-0ubuntu3.10:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "63FC404E-42EF-41C6-8E8D-A9143226C16F"}, {"criteria": "cpe:2.3:a:pulseaudio_project:pulseaudio:1\\:8.0-0ubuntu3.11:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "AE351482-281A-4EDB-A2CB-D31EC698327B"}, {"criteria": "cpe:2.3:a:pulseaudio_project:pulseaudio:1\\:8.0-0ubuntu3.12:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5BB61A68-81C5-4F77-8E6C-9C7B8FB01F9F"}, {"criteria": "cpe:2.3:a:pulseaudio_project:pulseaudio:1\\:8.0-0ubuntu4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2564667F-FE27-4DCE-B0AA-79EDC82AB8E6"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*", "vulnerable": false, "matchCriteriaId": "F7016A2A-8365-4F1A-89A2-7A19F2BCAE5B"}], "operator": "OR"}], "operator": "AND"}], "sourceIdentifier": "security@ubuntu.com"}