|
213871
|
7.8 |
HIGH
Local
|
google
|
android
|
In addListener of RegionSamplingThread.cpp, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with no additional execution pri…
|
CWE-20 CWE-787
Improper Input Validation Out-of-bounds Write
|
CVE-2020-0118
|
2024-11-21 13:52 |
2020-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213872
|
9.8 |
CRITICAL
Network
|
google
|
android
|
In aes_cmac of aes_cmac.cc, there is a possible out of bounds write due to an integer overflow. This could lead to remote code execution in the bluetooth server with no additional execution privilege…
|
CWE-787 CWE-190
Out-of-bounds Write Integer Overflow or Wraparound
|
CVE-2020-0117
|
2024-11-21 13:52 |
2020-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213873
|
5.5 |
MEDIUM
Local
|
google
|
android
|
In checkSystemLocationAccess of LocationAccessPolicy.java, there is a possible bypass of user profile isolation due to a permissions bypass. This could lead to local information disclosure with no ad…
|
NVD-CWE-noinfo
|
CVE-2020-0116
|
2024-11-21 13:52 |
2020-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213874
|
7.8 |
HIGH
Local
|
google
|
android
|
In verifyIntentFiltersIfNeeded of PackageManagerService.java, there is a possible settings bypass allowing an app to become the default handler for arbitrary domains. This could lead to local escalat…
|
CWE-863
Incorrect Authorization
|
CVE-2020-0115
|
2024-11-21 13:52 |
2020-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213875
|
7.8 |
HIGH
Local
|
google
|
android
|
In onCreateSliceProvider of KeyguardSliceProvider.java, there is a possible confused deputy due to a PendingIntent error. This could lead to local escalation of privilege that allows actions performe…
|
NVD-CWE-noinfo
|
CVE-2020-0114
|
2024-11-21 13:52 |
2020-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213876
|
5.5 |
MEDIUM
Local
|
google
|
android
|
In sendCaptureResult of Camera3OutputUtils.cpp, there is a possible out of bounds read due to a use after free. This could lead to local information disclosure with no additional execution privileges…
|
CWE-125 CWE-416
Out-of-bounds Read Use After Free
|
CVE-2020-0113
|
2024-11-21 13:52 |
2020-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213877
|
7.8 |
HIGH
Local
|
google
|
android
|
In simulatePackageSuspendBroadcast of NotificationManagerService.java, there is a missing permission check. This could lead to local escalation of privilege by creating fake system notifications with…
|
CWE-862
Missing Authorization
|
CVE-2020-0109
|
2024-11-21 13:52 |
2020-05-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213878
|
7.8 |
HIGH
Local
|
google intel
|
android jhl6540_firmware jhl6340_firmware jhl6240_firmware jhl7540_firmware jhl7440_firmware jhl7340_firmware jhl8540_firmware jhl8440_firmware core_i7-11850he_firmware …
|
In psi_write of psi.c, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User int…
|
CWE-787
Out-of-bounds Write
|
CVE-2020-0110
|
2024-11-21 13:52 |
2020-05-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213879
|
5.5 |
MEDIUM
Local
|
google
|
android
|
In getCellLocation of PhoneInterfaceManager.java, there is a possible permission bypass due to a missing SDK version check. This could lead to local information disclosure with no additional executio…
|
CWE-862
Missing Authorization
|
CVE-2020-0106
|
2024-11-21 13:52 |
2020-05-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213880
|
7.8 |
HIGH
Local
|
google
|
android
|
In onKeyguardVisibilityChanged of key_store_service.cpp, there is a missing permission check. This could lead to local escalation of privilege, allowing apps to use keyguard-bound keys when the scree…
|
CWE-862
Missing Authorization
|
CVE-2020-0105
|
2024-11-21 13:52 |
2020-05-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|