|
210951
|
7.8 |
HIGH
Local
|
google
|
android
|
In LLVM, there is a possible ineffective stack cookie placement due to stack frame double reservation. This could lead to local escalation of privilege with no additional execution privileges needed.…
|
NVD-CWE-noinfo
|
CVE-2020-0306
|
2024-11-21 13:53 |
2020-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210952
|
8.8 |
HIGH
Network
|
google
|
android
|
In the Media extractor, there is a possible use after free due to improper locking. This could lead to remote code execution in the media extractor with no additional execution privileges needed. Use…
|
CWE-416 CWE-667
Use After Free Improper Locking
|
CVE-2020-0303
|
2024-11-21 13:53 |
2020-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210953
|
6.5 |
MEDIUM
Network
|
google
|
android
|
In libstagefright, there is a possible resource exhaustion due to improper input validation. This could lead to remote denial of service with no additional execution privileges needed. User interacti…
|
CWE-20
Improper Input Validation
|
CVE-2020-0301
|
2024-11-21 13:53 |
2020-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210954
|
5.5 |
MEDIUM
Local
|
google
|
android
|
In devicepolicy service, there is a possible permission bypass due to an unsafe PendingIntent. This could lead to local information disclosure with User execution privileges needed. User interaction …
|
NVD-CWE-noinfo
|
CVE-2020-0297
|
2024-11-21 13:53 |
2020-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210955
|
5.5 |
MEDIUM
Local
|
google
|
android
|
In ADB server and USB server, there is a possible permission bypass due to an unsafe PendingIntent. This could lead to local information disclosure with User execution privileges needed. User interac…
|
NVD-CWE-noinfo
|
CVE-2020-0296
|
2024-11-21 13:53 |
2020-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210956
|
5.5 |
MEDIUM
Local
|
google
|
android
|
In Java network APIs, there is possible access to sensitive network state due to a missing permission check. This could lead to local information disclosure with no additional execution privileges ne…
|
CWE-862
Missing Authorization
|
CVE-2020-0293
|
2024-11-21 13:53 |
2020-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210957
|
5.5 |
MEDIUM
Local
|
google
|
android
|
In PackageManager, there is a missing permission check. This could lead to local information disclosure across users with no additional execution privileges needed. User interaction is not needed for…
|
CWE-862
Missing Authorization
|
CVE-2020-0290
|
2024-11-21 13:53 |
2020-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210958
|
5.5 |
MEDIUM
Local
|
google
|
android
|
In PackageManager, there is a missing permission check. This could lead to local information disclosure across users with no additional execution privileges needed. User interaction is not needed for…
|
CWE-862
Missing Authorization
|
CVE-2020-0289
|
2024-11-21 13:53 |
2020-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210959
|
5.5 |
MEDIUM
Local
|
google
|
android
|
In PackageManager, there is a missing permission check. This could lead to local information disclosure across user boundaries with no additional execution privileges needed. User interaction is not …
|
CWE-862
Missing Authorization
|
CVE-2020-0288
|
2024-11-21 13:53 |
2020-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210960
|
6.5 |
MEDIUM
Network
|
google
|
android
|
In libmkvextractor, there is a possible resource exhaustion due to a missing bounds check. This could lead to remote denial of service with no additional execution privileges needed. User interaction…
|
CWE-20
Improper Input Validation
|
CVE-2020-0287
|
2024-11-21 13:53 |
2020-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|