|
207971
|
6.5 |
MEDIUM
Network
|
google
|
android
|
In TextView of TextView.java, there is a possible app hang due to improper input validation. This could lead to remote denial of service with no additional execution privileges needed. User interacti…
|
CWE-20 CWE-770
Improper Input Validation Allocation of Resources Without Limits or Throttling
|
CVE-2020-27029
|
2024-11-21 14:20 |
2020-12-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
207972
|
4.4 |
MEDIUM
Local
|
google
|
android
|
In filter_incoming_event of hci_layer.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed…
|
CWE-125
Out-of-bounds Read
|
CVE-2020-27028
|
2024-11-21 14:20 |
2020-12-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
207973
|
5.5 |
MEDIUM
Local
|
google
|
android
|
In nfc_ncif_proc_get_routing of nfc_ncif.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no additional execution privile…
|
CWE-125
Out-of-bounds Read
|
CVE-2020-27027
|
2024-11-21 14:20 |
2020-12-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
207974
|
5.5 |
MEDIUM
Local
|
google
|
android
|
During boot, the device unlock interface behaves differently depending on if a fingerprint registered to the device is present. This could lead to local information disclosure with no additional exec…
|
CWE-203
Information Exposure Through Discrepancy
|
CVE-2020-27026
|
2024-11-21 14:20 |
2020-12-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
207975
|
5.5 |
MEDIUM
Local
|
google
|
android
|
In EapFailureNotifier.java and SimRequiredNotifier.java, there is a possible permission bypass due to an unsafe PendingIntent. This could lead to local information disclosure with User execution priv…
|
NVD-CWE-noinfo
|
CVE-2020-27025
|
2024-11-21 14:20 |
2020-12-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
207976
|
7.5 |
HIGH
Network
|
google
|
android
|
In smp_br_state_machine_event of smp_br_main.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure triggered by a malformed Blueto…
|
CWE-125
Out-of-bounds Read
|
CVE-2020-27024
|
2024-11-21 14:20 |
2020-12-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
207977
|
4.4 |
MEDIUM
Local
|
google
|
android
|
In setErrorPlaybackState of BluetoothMediaBrowserService.java, there is a possible permission bypass due to an unsafe PendingIntent. This could lead to local information disclosure with System execut…
|
NVD-CWE-noinfo
|
CVE-2020-27023
|
2024-11-21 14:20 |
2020-12-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
207978
|
4.4 |
MEDIUM
Local
|
google
|
android
|
In avrc_ctrl_pars_vendor_cmd of avrc_pars_tg.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges…
|
CWE-125
Out-of-bounds Read
|
CVE-2020-27021
|
2024-11-21 14:20 |
2020-12-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
207979
|
8.1 |
HIGH
Network
|
medtronic
|
mycarelink_smart_model_25000_firmware
|
Medtronic MyCareLink Smart 25000 all versions are vulnerable to a race condition in the MCL Smart Patient Reader software update system, which allows unsigned firmware to be uploaded and executed on …
|
CWE-367
Time-of-check Time-of-use (TOCTOU) Race Condition
|
CVE-2020-27252
|
2024-11-21 14:20 |
2020-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
207980
|
9.9 |
CRITICAL
Network
|
cisco
|
jabber jabber_for_mobile_platforms
|
Multiple vulnerabilities in Cisco Jabber for Windows, Jabber for MacOS, and Jabber for mobile platforms could allow an attacker to execute arbitrary programs on the underlying operating system (OS) w…
|
CWE-200
Information Exposure
|
CVE-2020-27134
|
2024-11-21 14:20 |
2020-12-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|