|
210641
|
5.5 |
MEDIUM
Local
|
google
|
android
|
In libavb, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is no…
|
CWE-125
Out-of-bounds Read
|
CVE-2020-0323
|
2024-11-21 13:53 |
2020-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210642
|
4.4 |
MEDIUM
Local
|
google
|
android
|
In apexd, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed…
|
CWE-125
Out-of-bounds Read
|
CVE-2020-0322
|
2024-11-21 13:53 |
2020-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210643
|
8.8 |
HIGH
Network
|
google
|
android
|
In the mp3 extractor, there is a possible out of bounds write due to uninitialized data. This could lead to remote code execution with no additional execution privileges needed. User interaction is n…
|
CWE-787 CWE-908
Out-of-bounds Write Use of Uninitialized Resource
|
CVE-2020-0321
|
2024-11-21 13:53 |
2020-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210644
|
6.5 |
MEDIUM
Network
|
google
|
android
|
In libstagefright, there is a possible resource exhaustion due to improper input validation. This could lead to remote denial of service with no additional execution privileges needed. User interacti…
|
CWE-20
Improper Input Validation
|
CVE-2020-0320
|
2024-11-21 13:53 |
2020-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210645
|
5.5 |
MEDIUM
Local
|
google
|
android
|
In UsageStatsManager, there is a possible access to protected data due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. U…
|
CWE-862
Missing Authorization
|
CVE-2020-0317
|
2024-11-21 13:53 |
2020-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210646
|
5.5 |
MEDIUM
Local
|
google
|
android
|
In AudioService, there are missing permission checks. This could lead to local information disclosure of audio configuration with no additional execution privileges needed. User interaction is not ne…
|
CWE-862
Missing Authorization
|
CVE-2020-0314
|
2024-11-21 13:53 |
2020-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210647
|
5.5 |
MEDIUM
Local
|
google
|
android
|
In Battery Saver, there is a possible permission bypass due to an unsafe PendingIntent. This could lead to local information disclosure with User execution privileges needed. User interaction is not …
|
NVD-CWE-noinfo
|
CVE-2020-0312
|
2024-11-21 13:53 |
2020-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210648
|
5.5 |
MEDIUM
Local
|
google
|
android
|
In Window Manager, there is a possible permission bypass due to an unsafe PendingIntent. This could lead to local information disclosure with User execution privileges needed. User interaction is not…
|
NVD-CWE-noinfo
|
CVE-2020-0308
|
2024-11-21 13:53 |
2020-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210649
|
7.8 |
HIGH
Local
|
google
|
android
|
In LLVM, there is a possible ineffective stack cookie placement due to stack frame double reservation. This could lead to local escalation of privilege with no additional execution privileges needed.…
|
NVD-CWE-noinfo
|
CVE-2020-0306
|
2024-11-21 13:53 |
2020-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210650
|
8.8 |
HIGH
Network
|
google
|
android
|
In the Media extractor, there is a possible use after free due to improper locking. This could lead to remote code execution in the media extractor with no additional execution privileges needed. Use…
|
CWE-416 CWE-667
Use After Free Improper Locking
|
CVE-2020-0303
|
2024-11-21 13:53 |
2020-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|