CVE-2020-0486
- EPSS 0.01%
- Veröffentlicht 15.12.2020 16:15:13
- Zuletzt bearbeitet 21.11.2024 04:53:36
In openAssetFileListener of ContactsProvider2.java, there is a possible permission bypass due to an insecure default value. This could lead to local escalation of privilege to change contact data with no additional execution privileges needed. User i...
CVE-2020-0488
- EPSS 0.24%
- Veröffentlicht 15.12.2020 16:15:13
- Zuletzt bearbeitet 21.11.2024 04:53:36
In ihevc_inter_pred_chroma_copy_ssse3 of ihevc_inter_pred_filters_ssse3_intr.c, there is a possible information disclosure due to uninitialized data. This could lead to remote information disclosure with no additional execution privileges needed. Use...
CVE-2020-0244
- EPSS 0.06%
- Veröffentlicht 15.12.2020 16:15:12
- Zuletzt bearbeitet 21.11.2024 04:53:10
In writeBurstBufferBytes of SPDIFEncoder.cpp, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information disclosure with no clear exfiltration path, with no additional execution privileges needed. Us...
CVE-2020-0280
- EPSS 0.02%
- Veröffentlicht 15.12.2020 16:15:12
- Zuletzt bearbeitet 21.11.2024 04:53:14
In nci_proc_ee_management_rsp of nci_hrcv.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is needed for exploit...
CVE-2020-0016
- EPSS 0.01%
- Veröffentlicht 14.12.2020 23:15:11
- Zuletzt bearbeitet 21.11.2024 04:52:45
In the Broadcom Nexus firmware, there is an insecure default password. This could lead to local escalation of privilege in the kernel with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVers...
CVE-2020-0019
- EPSS 0.02%
- Veröffentlicht 14.12.2020 23:15:11
- Zuletzt bearbeitet 21.11.2024 04:52:45
In the Broadcom Nexus firmware, there is an insecure default password. This could lead to local information disclosure in the kernel with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersi...
CVE-2020-0456
- EPSS 0.16%
- Veröffentlicht 14.12.2020 23:15:11
- Zuletzt bearbeitet 21.11.2024 04:53:33
There is a possible out of bounds write due to a missing bounds check.Product: AndroidVersions: Android SoCAndroid ID: A-170378843
CVE-2020-0459
- EPSS 0.01%
- Veröffentlicht 14.12.2020 22:15:14
- Zuletzt bearbeitet 21.11.2024 04:53:33
In sendConfiguredNetworkChangedBroadcast of WifiConfigManager.java, there is a possible leak of sensitive WiFi configuration data due to a missing permission check. This could lead to local information disclosure of WiFi network names with no additio...
CVE-2020-0460
- EPSS 0.17%
- Veröffentlicht 14.12.2020 22:15:14
- Zuletzt bearbeitet 21.11.2024 04:53:33
In createNameCredentialDialog of CertInstaller.java, there exists the possibility of improperly installed certificates due to a logic error. This could lead to remote information disclosure with no additional execution privileges needed. User interac...
CVE-2020-0463
- EPSS 1.62%
- Veröffentlicht 14.12.2020 22:15:14
- Zuletzt bearbeitet 21.11.2024 04:53:33
In sdp_server_handle_client_req of sdp_server.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure from the bluetooth server with no additional execution privileges needed. User in...