|
219381
|
7.8 |
HIGH
Local
|
google
|
android
|
An issue was discovered on Samsung mobile devices with N(7.x), O(8.x), and P(9.0) software. There is local SQL injection in the Story Video Editor Content Provider. The Samsung ID is SVE-2019-14062 (…
|
CWE-89
SQL Injection
|
CVE-2019-20592
|
2024-11-21 13:38 |
2020-03-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219382
|
7.8 |
HIGH
Local
|
google
|
android
|
An issue was discovered on Samsung mobile devices with N(7.x), O(8.x), and P(9.0) software. There is local SQL injection in the Gear VR Service Content Provider. The Samsung ID is SVE-2019-14058 (Jul…
|
CWE-89
SQL Injection
|
CVE-2019-20591
|
2024-11-21 13:38 |
2020-03-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219383
|
9.8 |
CRITICAL
Network
|
google
|
android
|
An issue was discovered on Samsung mobile devices with O(8.x) (Qualcomm chipsets) software. There is an integer underflow in the Secure Storage Trustlet. The Samsung ID is SVE-2019-13952 (July 2019).
|
CWE-191
Integer Underflow (Wrap or Wraparound)
|
CVE-2019-20590
|
2024-11-21 13:38 |
2020-03-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219384
|
9.8 |
CRITICAL
Network
|
google
|
android
|
An issue was discovered on Samsung mobile devices with P(9.0) software. The MemorySaver Content Provider allows SQL injection. The Samsung ID is SVE-2019-14365 (August 2019).
|
CWE-89
SQL Injection
|
CVE-2019-20576
|
2024-11-21 13:38 |
2020-03-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219385
|
5.5 |
MEDIUM
Local
|
gpac
|
gpac
|
An issue was discovered in libgpac.a in GPAC before 0.8.0, as demonstrated by MP4Box. It contains an invalid pointer dereference in gf_odf_delete_descriptor in odf/desc_private.c that can cause a den…
|
CWE-763
Release of Invalid Pointer or Reference
|
CVE-2019-20632
|
2024-11-21 13:38 |
2020-03-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219386
|
5.5 |
MEDIUM
Local
|
gpac
|
gpac
|
An issue was discovered in libgpac.a in GPAC before 0.8.0, as demonstrated by MP4Box. It contains an invalid pointer dereference in gf_list_count in utils/list.c that can cause a denial of service vi…
|
CWE-763
Release of Invalid Pointer or Reference
|
CVE-2019-20631
|
2024-11-21 13:38 |
2020-03-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219387
|
5.5 |
MEDIUM
Local
|
gpac
|
gpac
|
An issue was discovered in libgpac.a in GPAC before 0.8.0, as demonstrated by MP4Box. It contains a heap-based buffer over-read in BS_ReadByte (called from gf_bs_read_bit) in utils/bitstream.c that c…
|
CWE-125
Out-of-bounds Read
|
CVE-2019-20630
|
2024-11-21 13:38 |
2020-03-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219388
|
5.5 |
MEDIUM
Local
|
gpac
|
gpac
|
An issue was discovered in libgpac.a in GPAC before 0.8.0, as demonstrated by MP4Box. It contains a heap-based buffer over-read in gf_m2ts_process_pmt in media_tools/mpegts.c that can cause a denial …
|
CWE-125
Out-of-bounds Read
|
CVE-2019-20629
|
2024-11-21 13:38 |
2020-03-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219389
|
5.5 |
MEDIUM
Local
|
gpac
|
gpac
|
An issue was discovered in libgpac.a in GPAC before 0.8.0, as demonstrated by MP4Box. It contains a Use-After-Free vulnerability in gf_m2ts_process_pmt in media_tools/mpegts.c that can cause a denial…
|
CWE-416
Use After Free
|
CVE-2019-20628
|
2024-11-21 13:38 |
2020-03-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219390
|
9.8 |
CRITICAL
Network
|
google
|
android
|
An issue was discovered on Samsung mobile devices with O(8.x) and P(9.0) (with TEEGRIS) software. There is type confusion in the SKPM Trustlet, leading to arbitrary code execution. The Samsung ID is …
|
CWE-843
Type Confusion
|
CVE-2019-20589
|
2024-11-21 13:38 |
2020-03-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|