|
197421
|
9.8 |
CRITICAL
Network
|
qualcomm
|
apq8009_firmware apq8017_firmware apq8053_firmware apq8096au_firmware apq8098_firmware ipq4019_firmware ipq6018_firmware ipq8064_firmware ipq8074_firmware mdm9150_firmware<…
|
u'Remote code execution can happen by sending a carefully crafted POST query when Device configuration is accessed from a tethered client through webserver due to lack of array bound check.' in Snapd…
|
CWE-120
Classic Buffer Overflow
|
CVE-2020-3657
|
2024-11-21 14:31 |
2020-11-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197422
|
9.8 |
CRITICAL
Network
|
qualcomm
|
agatti_firmware apq8053_firmware apq8096au_firmware apq8098_firmware bitra_firmware kamorta_firmware msm8905_firmware msm8909w_firmware msm8917_firmware msm8940_firmware
|
u'Buffer overflow occurs while processing SIP message packet due to lack of check of index validation before copying into it' in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdrag…
|
CWE-129
Improper Validation of Array Index
|
CVE-2020-3654
|
2024-11-21 14:31 |
2020-11-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197423
|
7.8 |
HIGH
Local
|
qualcomm
|
agatti_firmware bitra_firmware kamorta_firmware qca6390_firmware qcs404_firmware qcs610_firmware rennell_firmware sa515m_firmware sc7180_firmware sc8180x_firmware sdx55_…
|
u'An Unaligned address or size can propagate to the database due to improper page permissions and can lead to improper access control' in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity,…
|
NVD-CWE-noinfo
|
CVE-2020-3638
|
2024-11-21 14:31 |
2020-11-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197424
|
7.8 |
HIGH
Local
|
apple
|
iphone_os ipados tvos watchos mac_os_x
|
An out-of-bounds read was addressed with improved input validation. This issue is fixed in watchOS 6.1.2, iOS 13.3.1 and iPadOS 13.3.1, tvOS 13.3.1, macOS Catalina 10.15.3, Security Update 2020-001 M…
|
CWE-125
Out-of-bounds Read
|
CVE-2020-3880
|
2024-11-21 14:31 |
2020-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197425
|
7.8 |
HIGH
Local
|
apple redhat
|
iphone_os ipados tvos safari icloud itunes enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server
|
A logic issue was addressed with improved validation. This issue is fixed in iCloud for Windows 7.17, iTunes 12.10.4 for Windows, iCloud for Windows 10.9.2, tvOS 13.3.1, Safari 13.0.5, iOS 13.3.1 and…
|
CWE-346
Origin Validation Error
|
CVE-2020-3864
|
2024-11-21 14:31 |
2020-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197426
|
7.8 |
HIGH
Local
|
apple
|
mac_os_x
|
A memory corruption issue was addressed with improved memory handling. This issue is fixed in macOS Catalina 10.15.3, Security Update 2020-001 Mojave, Security Update 2020-001 High Sierra. An applica…
|
CWE-787
Out-of-bounds Write
|
CVE-2020-3863
|
2024-11-21 14:31 |
2020-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197427
|
7.1 |
HIGH
Local
|
apple
|
mac_os_x
|
An access issue was addressed with improved access restrictions. This issue is fixed in macOS Catalina 10.15.3, Security Update 2020-001 Mojave, Security Update 2020-001 High Sierra. A malicious appl…
|
NVD-CWE-noinfo
|
CVE-2020-3855
|
2024-11-21 14:31 |
2020-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197428
|
5.3 |
MEDIUM
Network
|
apple
|
safari
|
A logic issue was addressed with improved validation. This issue is fixed in Safari 13.0.5. A URL scheme may be incorrectly ignored when determining multimedia permission for a website.
|
CWE-863
Incorrect Authorization
|
CVE-2020-3852
|
2024-11-21 14:31 |
2020-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197429
|
7.8 |
HIGH
Local
|
apple
|
mac_os_x
|
A use after free issue was addressed with improved memory management. This issue is fixed in macOS Catalina 10.15.4, Security Update 2020-002 Mojave, Security Update 2020-002 High Sierra, macOS Catal…
|
CWE-416
Use After Free
|
CVE-2020-3851
|
2024-11-21 14:31 |
2020-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197430
|
5.5 |
MEDIUM
Local
|
apple
|
mac_os_x iphone_os tvos watchos ipad_os
|
An access issue was addressed with additional sandbox restrictions. This issue is fixed in iOS 13.4 and iPadOS 13.4, macOS Catalina 10.15.4, tvOS 13.4, watchOS 6.2. A local user may be able to view s…
|
NVD-CWE-Other
|
CVE-2020-3918
|
2024-11-21 14:31 |
2020-10-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|