|
212441
|
5.5 |
MEDIUM
Local
|
google
|
android
|
In BnAAudioService::onTransact of IAAudioService.cpp, there is a possible out of bounds read due to unsafe deserialization. This could lead to local information disclosure with no additional executio…
|
CWE-125 CWE-502
Out-of-bounds Read Deserialization of Untrusted Data
|
CVE-2020-0132
|
2024-11-21 13:52 |
2020-06-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212442
|
8.8 |
HIGH
Network
|
google
|
android
|
In parseChunk of MPEG4Extractor.cpp, there is a possible out of bounds write due to incompletely initialized data. This could lead to remote code execution with no additional execution privileges nee…
|
CWE-787
Out-of-bounds Write
|
CVE-2020-0131
|
2024-11-21 13:52 |
2020-06-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212443
|
7.8 |
HIGH
Local
|
google
|
android
|
In SetData of btm_ble_multi_adv.cc, there is a possible out-of-bound write due to an incorrect bounds check. This could lead to local escalation of privilege with no additional execution privileges n…
|
CWE-787
Out-of-bounds Write
|
CVE-2020-0129
|
2024-11-21 13:52 |
2020-06-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212444
|
7.5 |
HIGH
Network
|
google
|
android
|
In addPacket of AMPEG4ElementaryAssembler, there is an out of bounds read due to an integer overflow. This could lead to remote information disclosure with no additional execution privileges required…
|
CWE-125 CWE-190
Out-of-bounds Read Integer Overflow or Wraparound
|
CVE-2020-0128
|
2024-11-21 13:52 |
2020-06-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212445
|
6.5 |
MEDIUM
Network
|
google
|
android
|
In AudioStream::decode of AudioGroup.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure in the phone process with no additiona…
|
CWE-125
Out-of-bounds Read
|
CVE-2020-0127
|
2024-11-21 13:52 |
2020-06-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212446
|
6.4 |
MEDIUM
Local
|
google
|
android
|
In multiple functions in DrmPlugin.cpp, there is a possible use after free due to a race condition. This could lead to local code execution with System execution privileges required. User interaction…
|
CWE-362 CWE-416
Race Condition Use After Free
|
CVE-2020-0126
|
2024-11-21 13:52 |
2020-06-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212447
|
6.7 |
MEDIUM
Local
|
google
|
android
|
In markBootComplete of InstalldNativeService.cpp, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privile…
|
CWE-787
Out-of-bounds Write
|
CVE-2020-0124
|
2024-11-21 13:52 |
2020-06-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212448
|
5.5 |
MEDIUM
Local
|
google
|
android
|
In updateUidProcState of AppOpsService.java, there is a possible permission bypass due to a logic error. This could lead to local information disclosure of location data with User execution privilege…
|
NVD-CWE-noinfo
|
CVE-2020-0121
|
2024-11-21 13:52 |
2020-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212449
|
5.3 |
MEDIUM
Network
|
google
|
android
|
In addOrUpdateNetworkInternal and related functions of WifiConfigManager.java, there is a possible man in the middle attack due to improper certificate validation. This could lead to remote informati…
|
CWE-295
Improper Certificate Validation
|
CVE-2020-0119
|
2024-11-21 13:52 |
2020-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212450
|
7.8 |
HIGH
Local
|
google
|
android
|
In addListener of RegionSamplingThread.cpp, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with no additional execution pri…
|
CWE-20 CWE-787
Improper Input Validation Out-of-bounds Write
|
CVE-2020-0118
|
2024-11-21 13:52 |
2020-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|