|
213511
|
5.5 |
MEDIUM
Local
|
google
|
android
|
In UsageStatsManager, there is a possible access to protected data due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. U…
|
CWE-862
Missing Authorization
|
CVE-2020-0317
|
2024-11-21 13:53 |
2020-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213512
|
5.5 |
MEDIUM
Local
|
google
|
android
|
In AudioService, there are missing permission checks. This could lead to local information disclosure of audio configuration with no additional execution privileges needed. User interaction is not ne…
|
CWE-862
Missing Authorization
|
CVE-2020-0314
|
2024-11-21 13:53 |
2020-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213513
|
5.5 |
MEDIUM
Local
|
google
|
android
|
In Battery Saver, there is a possible permission bypass due to an unsafe PendingIntent. This could lead to local information disclosure with User execution privileges needed. User interaction is not …
|
NVD-CWE-noinfo
|
CVE-2020-0312
|
2024-11-21 13:53 |
2020-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213514
|
5.5 |
MEDIUM
Local
|
google
|
android
|
In Window Manager, there is a possible permission bypass due to an unsafe PendingIntent. This could lead to local information disclosure with User execution privileges needed. User interaction is not…
|
NVD-CWE-noinfo
|
CVE-2020-0308
|
2024-11-21 13:53 |
2020-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213515
|
7.8 |
HIGH
Local
|
google
|
android
|
In LLVM, there is a possible ineffective stack cookie placement due to stack frame double reservation. This could lead to local escalation of privilege with no additional execution privileges needed.…
|
NVD-CWE-noinfo
|
CVE-2020-0306
|
2024-11-21 13:53 |
2020-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213516
|
8.8 |
HIGH
Network
|
google
|
android
|
In the Media extractor, there is a possible use after free due to improper locking. This could lead to remote code execution in the media extractor with no additional execution privileges needed. Use…
|
CWE-416 CWE-667
Use After Free Improper Locking
|
CVE-2020-0303
|
2024-11-21 13:53 |
2020-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213517
|
6.5 |
MEDIUM
Network
|
google
|
android
|
In libstagefright, there is a possible resource exhaustion due to improper input validation. This could lead to remote denial of service with no additional execution privileges needed. User interacti…
|
CWE-20
Improper Input Validation
|
CVE-2020-0301
|
2024-11-21 13:53 |
2020-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213518
|
5.5 |
MEDIUM
Local
|
google
|
android
|
In devicepolicy service, there is a possible permission bypass due to an unsafe PendingIntent. This could lead to local information disclosure with User execution privileges needed. User interaction …
|
NVD-CWE-noinfo
|
CVE-2020-0297
|
2024-11-21 13:53 |
2020-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213519
|
5.5 |
MEDIUM
Local
|
google
|
android
|
In ADB server and USB server, there is a possible permission bypass due to an unsafe PendingIntent. This could lead to local information disclosure with User execution privileges needed. User interac…
|
NVD-CWE-noinfo
|
CVE-2020-0296
|
2024-11-21 13:53 |
2020-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213520
|
5.5 |
MEDIUM
Local
|
google
|
android
|
In Java network APIs, there is possible access to sensitive network state due to a missing permission check. This could lead to local information disclosure with no additional execution privileges ne…
|
CWE-862
Missing Authorization
|
CVE-2020-0293
|
2024-11-21 13:53 |
2020-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|