CVE-2020-0412
- EPSS 0.01%
- Veröffentlicht 14.10.2020 14:15:16
- Zuletzt bearbeitet 21.11.2024 04:53:28
In setProcessMemoryTrimLevel of ActivityManagerService.java, there is a missing permission check. This could lead to local information disclosure of foreground processes with no additional execution privileges needed. User interaction is not needed f...
CVE-2020-0413
- EPSS 1.62%
- Veröffentlicht 14.10.2020 14:15:16
- Zuletzt bearbeitet 21.11.2024 04:53:28
In gatt_process_read_by_type_rsp of gatt_cl.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure in the Bluetooth server with no additional execution privileges needed. User intera...
CVE-2020-0414
- EPSS 0.25%
- Veröffentlicht 14.10.2020 14:15:16
- Zuletzt bearbeitet 21.11.2024 04:53:28
In AudioFlinger::RecordThread::threadLoop of audioflinger/Threads.cpp, there is a possible non-silenced audio buffer due to a permissions bypass. This could lead to remote information disclosure with no additional execution privileges needed. User in...
CVE-2020-0415
- EPSS 0.02%
- Veröffentlicht 14.10.2020 14:15:16
- Zuletzt bearbeitet 21.11.2024 04:53:28
In various locations in SystemUI, there is a possible permission bypass due to an unsafe PendingIntent. This could lead to local information disclosure of contact data with User execution privileges needed. User interaction is not needed for exploita...
CVE-2020-0246
- EPSS 0.02%
- Veröffentlicht 14.10.2020 14:15:15
- Zuletzt bearbeitet 21.11.2024 04:53:10
In getCarrierPrivilegeStatus of UiccAccessRule.java, there is a missing permission check. This could lead to local information disclosure of EID data with no additional execution privileges needed. User interaction is not needed for exploitation.Prod...
CVE-2019-2194
- EPSS 0.02%
- Veröffentlicht 14.10.2020 13:15:12
- Zuletzt bearbeitet 21.11.2024 04:40:24
In SurfaceFlinger::createLayer of SurfaceFlinger.cpp, there is a possible arbitrary code execution due to improper casting. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not neede...
CVE-2020-26603
- EPSS 0.06%
- Veröffentlicht 06.10.2020 19:15:15
- Zuletzt bearbeitet 21.11.2024 05:20:08
An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) software. Sticker Center allows directory traversal for an unprivileged process to read arbitrary files. The Samsung ID is SVE-2020-18433 (October 2020).
CVE-2020-26604
- EPSS 0.12%
- Veröffentlicht 06.10.2020 19:15:15
- Zuletzt bearbeitet 21.11.2024 05:20:08
An issue was discovered in SystemUI on Samsung mobile devices with O(8.x), P(9.0), Q(10.0), and R(11.0) software. PendingIntent allows an unprivileged process to access contact numbers. The Samsung ID is SVE-2020-18467 (October 2020).
CVE-2020-26605
- EPSS 0.12%
- Veröffentlicht 06.10.2020 19:15:15
- Zuletzt bearbeitet 21.11.2024 05:20:08
An issue was discovered on Samsung mobile devices with Q(10.0) and R(11.0) (Exynos chipsets) software. They allow attackers to obtain sensitive information by reading a log. The Samsung ID is SVE-2020-18596 (October 2020).
CVE-2020-26606
- EPSS 0.12%
- Veröffentlicht 06.10.2020 19:15:15
- Zuletzt bearbeitet 21.11.2024 05:20:08
An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), Q(10.0), and R(11.0) software. An attacker can access certain Secure Folder content via a debugging command. The Samsung ID is SVE-2020-18673 (October 2020).