VYPR
Critical severity9.8NVD Advisory· Published May 18, 2020· Updated Jun 17, 2026

CVE-2020-12856

CVE-2020-12856

Description

OpenTrace, as used in COVIDSafe through v1.0.17, TraceTogether, ABTraceTogether, and other applications on iOS and Android, allows remote attackers to conduct long-term re-identification attacks and possibly have unspecified other impact, because of how Bluetooth is used.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

10
  • cpe:2.3:a:alberta:abtracetogether:-:*:*:*:*:android:*:*+ 1 more
    • cpe:2.3:a:alberta:abtracetogether:-:*:*:*:*:android:*:*
    • cpe:2.3:a:alberta:abtracetogether:-:*:*:*:*:iphone_os:*:*
  • Health/Covidsafe2 versions
    cpe:2.3:a:health:covidsafe:*:*:*:*:*:android:*:*+ 1 more
    • cpe:2.3:a:health:covidsafe:*:*:*:*:*:android:*:*range: <=1.0.17
    • cpe:2.3:a:health:covidsafe:-:*:*:*:*:iphone_os:*:*
  • cpe:2.3:a:tracetogether:tracetogether:-:*:*:*:*:android:*:*+ 2 more
    • cpe:2.3:a:tracetogether:tracetogether:-:*:*:*:*:android:*:*
    • cpe:2.3:a:tracetogether:tracetogether:-:*:*:*:*:iphone_os:*:*
    • (no CPE)
  • COVIDSafe/COVIDSafedescription
  • Range: <=1.0.17

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.