|
212251
|
7.8 |
HIGH
Local
|
google
|
android
|
In handleMessage of BluetoothManagerService, there is an incomplete reset. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed …
|
CWE-459
Incomplete Cleanup
|
CVE-2020-0183
|
2024-11-21 13:53 |
2020-06-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212252
|
6.5 |
MEDIUM
Network
|
google debian
|
android debian_linux
|
In exif_entry_get_value of exif-entry.c, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges …
|
CWE-125
Out-of-bounds Read
|
CVE-2020-0182
|
2024-11-21 13:53 |
2020-06-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212253
|
7.5 |
HIGH
Network
|
google fedoraproject libexif_project
|
android fedora libexif
|
In exif_data_load_data_thumbnail of exif-data.c, there is a possible denial of service due to an integer overflow. This could lead to remote denial of service with no additional execution privileges …
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2020-0181
|
2024-11-21 13:53 |
2020-06-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212254
|
6.5 |
MEDIUM
Network
|
google
|
android
|
In GetOpusHeaderBuffers() of OpusHeader.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure with no additional execution privil…
|
CWE-125
Out-of-bounds Read
|
CVE-2020-0180
|
2024-11-21 13:53 |
2020-06-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212255
|
7.8 |
HIGH
Local
|
google
|
android
|
In doSendObjectInfo of MtpServer.cpp, there is a possible path traversal attack due to insufficient input validation. This could lead to local escalation of privilege with no additional execution pri…
|
CWE-22 CWE-20
Path Traversal Improper Input Validation
|
CVE-2020-0179
|
2024-11-21 13:53 |
2020-06-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212256
|
5.5 |
MEDIUM
Local
|
google
|
android
|
In getAllConfigFlags of SettingsProvider.cpp, there is a possible illegal read due to a missing permission check. This could lead to local information disclosure of config flags with no additional ex…
|
CWE-862
Missing Authorization
|
CVE-2020-0178
|
2024-11-21 13:53 |
2020-06-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212257
|
5.5 |
MEDIUM
Local
|
google
|
android
|
In connect() of PanService.java, there is a possible permissions bypass. This could lead to local escalation of privilege to change network connection settings with no additional execution privileges…
|
CWE-862
Missing Authorization
|
CVE-2020-0177
|
2024-11-21 13:53 |
2020-06-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212258
|
7.5 |
HIGH
Network
|
google
|
android
|
In avdt_msg_prs_rej of avdt_msg.cc, there is a possible out-of-bounds read due to improper input validation. This could lead to remote information disclosure with no additional execution privileges n…
|
CWE-20 CWE-125
Improper Input Validation Out-of-bounds Read
|
CVE-2020-0176
|
2024-11-21 13:53 |
2020-06-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212259
|
6.5 |
MEDIUM
Network
|
google
|
android
|
In XMF_ReadNode of eas_xmf.c, there is possible resource exhaustion due to improper input validation. This could lead to remote denial of service with no additional execution privileges needed. User …
|
CWE-20 CWE-834
Improper Input Validation Excessive Iteration
|
CVE-2020-0175
|
2024-11-21 13:53 |
2020-06-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212260
|
6.5 |
MEDIUM
Network
|
google
|
android
|
In Parse_ptbl of eas_mdls.c, there is possible resource exhaustion due to a missing bounds check. This could lead to remote denial of service with no additional execution privileges needed. User inte…
|
CWE-20 CWE-834 CWE-835
Improper Input Validation Excessive Iteration Loop with Unreachable Exit Condition ('Infinite Loop')
|
CVE-2020-0174
|
2024-11-21 13:53 |
2020-06-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|