01642 06 11 11 Arrange Call

CVE Database

Year: 2020

CVE Database Year: 2020

CVE-2020-0001: Isolated App Privilege Escalation Vulnerability in Android
CVE-2020-0002: Use-after-free vulnerability in ih264d_init_decoder in ih264d_api.c allows remote attackers to execute arbitrary code via a crafted video file in Android 8.0, 8.1, 9, and 10.
CVE-2020-0003: Time-of-Check Time-of-Use Vulnerability in InstallStart.java Allows Package Validation Bypass
CVE-2020-0004: Local Denial of Service Vulnerability in WallpaperManagerService's generateCrop Method
CVE-2020-0005: Out-of-bounds Write Vulnerability in btm_read_remote_ext_features_complete of Android
CVE-2020-0006: Uninitialized Data Information Disclosure in rw_i93_send_cmd_write_single_block of rw_i93.cc
CVE-2020-0007: Heap Memory Information Disclosure in flattenString8 of Sensor.cpp
CVE-2020-0008: Race condition in LowEnergyClient::MtuChangedCallback in low_energy_client.cc leads to out-of-bounds read vulnerability in Android
CVE-2020-0009: Arbitrary Write Permissions Bypass in ashmem.c (Android Kernel)
CVE-2020-0010: Out-of-bounds Write Vulnerability in fpc_ta_get_build_info of fpc_ta_kpi.c
CVE-2020-0011: Out of Bounds Write Vulnerability in get_auth_result of fpc_ta_hw_auth.c
CVE-2020-0012: Out of Bounds Write Vulnerability in fpc_ta_pn_get_unencrypted_image of fpc_ta_pn.c
CVE-2020-0014: Clickable TYPE_TOAST Window Vulnerability
CVE-2020-0015: Overlay Vulnerability in CertInstaller: Local Privilege Escalation in Android
CVE-2020-0016: Insecure Default Password Vulnerability in Broadcom Nexus Firmware
CVE-2020-0017: Local Information Disclosure Vulnerability in Android's User Dictionary
CVE-2020-0018: Possible Log Information Disclosure in MotionEntry::appendDescription of InputDispatcher.cpp
CVE-2020-0019: Insecure Default Password Vulnerability in Broadcom Nexus Firmware
CVE-2020-0020: ExifInterface.java: Location Information Redaction Failure
CVE-2020-0021: Possible Permanent Denial-of-Service Vulnerability in removeUnusedPackagesLPw of PackageManagerService.java
CVE-2020-0022: Out of Bounds Write Vulnerability in reassemble_and_dispatch of packet_fragmenter.cc
CVE-2020-0023: Missing Permission Check in setPhonebookAccessPermission of AdapterService.java Allows Disclosure of User Contacts over Bluetooth
CVE-2020-0024: Possible Unauthorized Setting Modification Vulnerability in SettingsBaseActivity.java
CVE-2020-0025: Screen Pinning Permissions Bypass in deletePackageVersionedInternal of PackageManagerService.java
CVE-2020-0026: Use-after-free vulnerability in Parcel::continueWrite in Parcel.cpp
CVE-2020-0027: Out of Bounds Write Vulnerability in HidRawSensor::batch of HidRawSensor.cpp
CVE-2020-0028: Possible Bypass of Private DNS Settings in NetworkMonitor.java
CVE-2020-0029: Location History Storage Vulnerability in WifiConfigManager
CVE-2020-0030: Race condition vulnerability in binder_thread_release in binder.c allows for local privilege escalation without additional execution privileges needed
CVE-2020-0031: Sensitive Information Disclosure in Augmented Autofill of Android-10
CVE-2020-0032: Heap Buffer Overflow in ih264d_release_display_bufs of ih264d_utils.c
CVE-2020-0033: Stale Pointer Out-of-Bounds Write Vulnerability in CryptoPlugin::decrypt of CryptoPlugin.cpp
CVE-2020-0034: Out-of-bounds Read Vulnerability in vp8_decode_frame of decodeframe.c
CVE-2020-0035: Missing Permission Check in TelephonyProvider.java Allows Unauthorized Access to SIM Card Info
CVE-2020-0036: Possible Permissions Bypass Vulnerability in hasPermissions of PermissionMonitor.java
CVE-2020-0037: Out of Bounds Read Vulnerability in rw_i93_sm_set_read_only of Android NFC
CVE-2020-0038: Uninitialized Data Read Vulnerability in rw_i93_sm_update_ndef of rw_i93.cc
CVE-2020-0039: Uninitialized Data Read Vulnerability in rw_i93_sm_update_ndef of rw_i93.cc
CVE-2020-0041: Out-of-Bounds Write Vulnerability in binder_transaction of Android Kernel
CVE-2020-0042: Possible Out of Bounds Read in fpc_ta_hw_auth_unwrap_key of fpc_ta_hw_auth_qsee.c
CVE-2020-0043: Out of Bounds Read Vulnerability in authorize_enrol of fpc_ta_hw_auth.c
CVE-2020-0044: Out of Bounds Read Vulnerability in set_nonce of fpc_ta_qc_auth.c
CVE-2020-0045: Race condition vulnerability in StatsService::command of StatsService.cpp allows for local escalation of privilege with System execution privileges needed (Android-10).
CVE-2020-0046: Heap Buffer Overflow in DrmPlugin::releaseSecureStops of DrmPlugin.cpp Allows Local Privilege Escalation
CVE-2020-0047: Missing Permission Check in setMasterMute of AudioService.java Allows Local Silencing of Audio
CVE-2020-0048: Possible Stack Information Leak in onTransact of IAudioFlinger.cpp
CVE-2020-0049: Possible Information Disclosure in onReadBuffer() of StreamingSource.cpp in Android-10 (A-140177694)
CVE-2020-0050: Out-of-bounds Write Vulnerability in nfa_hciu_send_msg of nfa_hci_utils.cc
CVE-2020-0051: Possible Tapjacking Vulnerability in SettingsHomepageActivity's onCreate Method
CVE-2020-0052: Lock Screen SMS Permissions Bypass Vulnerability
CVE-2020-0053: Out-of-bounds Write Vulnerability in convertHidlNanDataPathInitiatorRequestToLegacy and convertHidlNanDataPathIndicationResponseToLegacy of hidl_struct_util.cpp
CVE-2020-0054: Possible Permission Revocation in WifiNetworkSuggestionsManager
CVE-2020-0055: Out of Bounds Read Vulnerability in l2c_link_process_num_completed_pkts of l2c_link.cc
CVE-2020-0056: Out of Bounds Read Vulnerability in btu_hcif_connection_comp_evt of btu_hcif.cc
CVE-2020-0057: Out of Bounds Read Vulnerability in btm_process_inq_results of btm_inq.cc
CVE-2020-0058: Out of Bounds Read Vulnerability in l2c_rcv_acl_data of l2c_main.cc
CVE-2020-0059: Out-of-bounds Read Vulnerability in btm_ble_batchscan_filter_track_adv_vse_cback of Android-10
CVE-2020-0060: Possible SQL Injection Vulnerability in SmsProvider.java and MmsSmsProvider.java Allows Permission Bypass and Local Information Disclosure
CVE-2020-0061: Possible Permissions Bypass in Pixel Recorder Allows Arbitrary Audio Recording
CVE-2020-0062: Euicc Information Disclosure Vulnerability: Remote Exploitation without User Interaction
CVE-2020-0063: Local Privilege Escalation Vulnerability in SurfaceFlinger with TEE Bypass
CVE-2020-0064: Improper Authorization Vulnerability in Android SoC Provisioning Data Processing
CVE-2020-0065: Improper Authorization in Android Suite Daemon Receiver Component
CVE-2020-0066: Race condition vulnerability in netlink driver allows for local privilege escalation
CVE-2020-0067: Out of Bounds Read Vulnerability in f2fs_xattr_generic_list of xattr.c
CVE-2020-0068: Integer Overflow Vulnerability in crus_afe_get_param of msm-cirrus-playback.c
CVE-2020-0069: Out-of-Bounds Write Vulnerability in Mediatek Command Queue Driver
CVE-2020-0070: Out of Bounds Write Vulnerability in rw_t2t_update_lock_attributes of rw_t2t_ndef.cc
CVE-2020-0071: Out of Bounds Write Vulnerability in rw_t2t_extract_default_locks_info of rw_t2t_ndef.cc
CVE-2020-0072: Out-of-bounds Write Vulnerability in rw_t2t_handle_tlv_detect_rsp of rw_t2t_ndef.cc
CVE-2020-0073: Out-of-bounds Write Vulnerability in rw_t2t_handle_tlv_detect_rsp of rw_t2t_ndef.cc
CVE-2020-0074: Potential Settings Bypass Vulnerability Allowing Arbitrary Domain Default Handler in PackageManagerService
CVE-2020-0075: Out of Bounds Read Vulnerability in FPC IRIS TrustZone App's set_shared_key Function
CVE-2020-0076: Out of Bounds Write Vulnerability in FPC IRIS TrustZone App
CVE-2020-0077: Out of Bounds Read Vulnerability in FPC IRIS TrustZone App Allows Local Information Disclosure
CVE-2020-0078: Out of Bounds Write Vulnerability in DrmPlugin.cpp
CVE-2020-0079: Out-of-bounds Write Vulnerability in CryptoPlugin.cpp (CVE-2020-XXXX)
CVE-2020-0080: Possible Local Privilege Escalation Vulnerability in AppOpsControllerImpl.java
CVE-2020-0081: Double Free Vulnerability in AssetManager.java Allows for Local Privilege Escalation
CVE-2020-0082: Unsafe Deserialization Vulnerability in ExternalVibration.java Allows Arbitrary Intent Activation
CVE-2020-0083: Improper Default Value Handling in setRequirePmfInternal of sta_network.cpp in Android-10 (A-142797954)
CVE-2020-0084: Missing Permission Checks in NotificationManagerService.java Allows Local Privilege Escalation
CVE-2020-0085: Possible Permission Bypass in setBluetoothTethering of PanService.java
CVE-2020-0086: Possible Out of Bounds Write Vulnerability in readCString of Parcel.cpp
CVE-2020-0087: Possible Side Channel Information Disclosure in getProcessPss of ActivityManagerService.java
CVE-2020-0088: Possible Resource Exhaustion Vulnerability in parseTrackFragmentRun of MPEG4Extractor.cpp
CVE-2020-0089: Missing Permission Check in Audio Server Allows Local Privilege Escalation in Android-11 (A-137015603)
CVE-2020-0090: Improper Authorization in Android Email Receiver Component (A-149813048)
CVE-2020-0091: Incorrect Configuration in mnld Driver_cfg for Meta Factory Mode Vulnerability
CVE-2020-0092: Possible Disclosure of Sensitive Notification Content in setHideSensitive of NotificationStackScrollLayout.java
CVE-2020-0093: Out-of-bounds Read Vulnerability in exif_data_save_data_entry of exif-data.c
CVE-2020-0094: Out of Bounds Write Vulnerability in ExifUtils.cpp
CVE-2020-0096: Possible Privilege Escalation Vulnerability in ActivityStartController.java
CVE-2020-0097: Permission Bypass Vulnerability in PackageManagerService.java
CVE-2020-0098: Permission Bypass Vulnerability in navigateUpToLocked of ActivityStack.java
CVE-2020-0099: Insecure Default Value in addWindow of WindowManagerService.java Allows for Tapjacking and Privilege Escalation
CVE-2020-0100: Out-of-bounds Read Vulnerability in onTransact of IHDCP.cpp
CVE-2020-0101: Uninitialized Data Information Disclosure in BnCrypto::onTransact of ICrypto.cpp
CVE-2020-0102: Out-of-Bounds Write Vulnerability in GattServer::SendResponse of gatt_server.cc
CVE-2020-0103: Possible Remote Code Execution Vulnerability in a2dp_aac_decoder_cleanup of a2dp_aac_decoder.cc
CVE-2020-0104: Inappropriate Read Vulnerability in KeyguardStateMonitor.java
CVE-2020-0105: Missing Permission Check in onKeyguardVisibilityChanged in key_store_service.cpp Allows Local Escalation of Privilege in Android
CVE-2020-0106: Possible Permission Bypass in getCellLocation of PhoneInterfaceManager.java
CVE-2020-0107: Possible Permissions Bypass and Local Information Disclosure in getUiccCardsInfo of PhoneInterfaceManager.java
CVE-2020-0108: Possible bypass of foreground process restrictions in postNotification of ServiceRecord.java
CVE-2020-0109: Missing Permission Check in simulatePackageSuspendBroadcast of NotificationManagerService.java Allows Local Privilege Escalation
CVE-2020-0110: Out of Bounds Write Vulnerability in psi_write of psi.c
CVE-2020-0113: Out-of-Bounds Read Vulnerability in sendCaptureResult of Camera3OutputUtils.cpp
CVE-2020-0114: Local Privilege Escalation Vulnerability in KeyguardSliceProvider
CVE-2020-0115: Potential settings bypass vulnerability in PackageManagerService.java allows arbitrary domain takeover
CVE-2020-0116: Possible Bypass of User Profile Isolation in checkSystemLocationAccess of LocationAccessPolicy.java
CVE-2020-0117: Integer Overflow Vulnerability in aes_cmac.cc Allows Remote Code Execution in Bluetooth Server
CVE-2020-0118: Out-of-bounds Write Vulnerability in addListener of RegionSamplingThread.cpp
CVE-2020-0119: Improper Certificate Validation in WifiConfigManager.java Allows Man-in-the-Middle Attack
CVE-2020-0120: Heap Buffer Overflow in notifyErrorForPendingRequests of QCamera3HWI.cpp
CVE-2020-0121: Possible Permission Bypass in updateUidProcState of AppOpsService.java Leading to Local Information Disclosure
CVE-2020-0122: Possible Permissions Bypass in com.google.android.providers.gsf.permission.WRITE_GSERVICES in AndroidManifest.xml
CVE-2020-0123: Possible Out of Bounds Write Vulnerability in Android SoC (A-149871374)
CVE-2020-0124: Out of Bounds Write Vulnerability in markBootComplete of InstalldNativeService.cpp
CVE-2020-0125: Out of Bounds Read Vulnerability in mediadrm: Local Information Disclosure
CVE-2020-0126: Race condition vulnerability in DrmPlugin.cpp allows for local code execution
CVE-2020-0127: Out of Bounds Read Vulnerability in AudioStream::decode of AudioGroup.cpp
CVE-2020-0128: Integer Overflow Vulnerability in AMPEG4ElementaryAssembler's addPacket Method
CVE-2020-0129: Out-of-Bound Write Vulnerability in SetData of btm_ble_multi_adv.cc