|
210241
|
9.8 |
CRITICAL
Network
|
google
|
android
|
An issue was discovered on Samsung mobile devices with Q(10.0) (Exynos980 9630 and Exynos990 9830 chipsets) software. The Bootloader has a heap-based buffer overflow because of the mishandling of spe…
|
CWE-787
Out-of-bounds Write
|
CVE-2020-12747
|
2024-11-21 14:00 |
2020-05-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210242
|
9.8 |
CRITICAL
Network
|
google
|
android
|
An issue was discovered on Samsung mobile devices with O(8.X), P(9.0), and Q(10.0) (Exynos chipsets) software. Attackers can bypass the Secure Bootloader protection mechanism via a heap-based buffer …
|
CWE-787
Out-of-bounds Write
|
CVE-2020-12746
|
2024-11-21 14:00 |
2020-05-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210243
|
7.5 |
HIGH
Network
|
google
|
android
|
An issue was discovered on Samsung mobile devices with Q(10.0) software. Attackers can bypass the locked-state protection mechanism and access clipboard content via USSD. The Samsung ID is SVE-2019-1…
|
CWE-862
Missing Authorization
|
CVE-2020-12745
|
2024-11-21 14:00 |
2020-05-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210244
|
7.5 |
HIGH
Network
|
exim fedoraproject debian canonical
|
exim fedora debian_linux ubuntu_linux
|
Exim through 4.93 has an out-of-bounds read in the SPA authenticator that could result in SPA/NTLM authentication bypass in auths/spa.c and auths/auth-spa.c.
|
CWE-125
Out-of-bounds Read
|
CVE-2020-12783
|
2024-11-21 14:00 |
2020-05-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210245
|
9.8 |
CRITICAL
Network
|
gazie_project
|
gazie
|
An issue was discovered in Gazie 7.32. A successful installation does not remove or block (or in any other way prevent use of) its own file /setup/install/setup.php, meaning that anyone can request i…
|
CWE-552
Files or Directories Accessible to External Parties
|
CVE-2020-12743
|
2024-11-21 14:00 |
2020-05-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210246
|
5.5 |
MEDIUM
Local
|
linux canonical debian
|
linux_kernel ubuntu_linux debian_linux
|
An issue was discovered in the Linux kernel before 5.6. svm_cpu_uninit in arch/x86/kvm/svm.c has a memory leak, aka CID-d80b64ff297e. NOTE: third parties dispute this issue because it's a one-time le…
|
CWE-401
Missing Release of Memory after Effective Lifetime
|
CVE-2020-12768
|
2024-11-21 14:00 |
2020-05-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210247
|
5.5 |
MEDIUM
Local
|
libexif_project debian canonical opensuse
|
libexif debian_linux ubuntu_linux leap
|
exif_entry_get_value in exif-entry.c in libexif 0.6.21 has a divide-by-zero error.
|
CWE-369
Divide By Zero
|
CVE-2020-12767
|
2024-11-21 14:00 |
2020-05-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210248
|
5.5 |
MEDIUM
Local
|
linux debian opensuse canonical netapp oracle
|
linux_kernel debian_linux leap ubuntu_linux cloud_backup element_software steelstore_cloud_integrated_storage solidfire hci_management_node active_iq_unified_manager hci…
|
An issue was discovered in the Linux kernel through 5.6.11. btree_gc_coalesce in drivers/md/bcache/btree.c has a deadlock if a coalescing operation fails.
|
CWE-667
Improper Locking
|
CVE-2020-12771
|
2024-11-21 14:00 |
2020-05-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210249
|
6.7 |
MEDIUM
Local
|
linux fedoraproject canonical debian netapp
|
linux_kernel fedora ubuntu_linux debian_linux cloud_backup element_software steelstore_cloud_integrated_storage solidfire hci_management_node active_iq_unified_manager b…
|
An issue was discovered in the Linux kernel through 5.6.11. sg_write lacks an sg_remove_request call in a certain failure case, aka CID-83c6f2390040.
|
NVD-CWE-noinfo
|
CVE-2020-12770
|
2024-11-21 14:00 |
2020-05-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210250
|
5.5 |
MEDIUM
Local
|
linux debian canonical opensuse netapp
|
linux_kernel debian_linux ubuntu_linux leap cloud_backup element_software steelstore_cloud_integrated_storage solidfire hci_management_node active_iq_unified_manager hci…
|
An issue was discovered in the Linux kernel before 5.4.17. drivers/spi/spi-dw.c allows attackers to cause a panic via concurrent calls to dw_spi_irq and dw_spi_transfer_one, aka CID-19b61392c5a8.
|
CWE-662
Improper Synchronization
|
CVE-2020-12769
|
2024-11-21 14:00 |
2020-05-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|