CVE-2020-0246
- EPSS 0.02%
- Veröffentlicht 14.10.2020 14:15:15
- Zuletzt bearbeitet 21.11.2024 04:53:10
In getCarrierPrivilegeStatus of UiccAccessRule.java, there is a missing permission check. This could lead to local information disclosure of EID data with no additional execution privileges needed. User interaction is not needed for exploitation.Prod...
CVE-2019-2194
- EPSS 0.02%
- Veröffentlicht 14.10.2020 13:15:12
- Zuletzt bearbeitet 21.11.2024 04:40:24
In SurfaceFlinger::createLayer of SurfaceFlinger.cpp, there is a possible arbitrary code execution due to improper casting. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not neede...
CVE-2020-26603
- EPSS 0.06%
- Veröffentlicht 06.10.2020 19:15:15
- Zuletzt bearbeitet 21.11.2024 05:20:08
An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) software. Sticker Center allows directory traversal for an unprivileged process to read arbitrary files. The Samsung ID is SVE-2020-18433 (October 2020).
CVE-2020-26604
- EPSS 0.12%
- Veröffentlicht 06.10.2020 19:15:15
- Zuletzt bearbeitet 21.11.2024 05:20:08
An issue was discovered in SystemUI on Samsung mobile devices with O(8.x), P(9.0), Q(10.0), and R(11.0) software. PendingIntent allows an unprivileged process to access contact numbers. The Samsung ID is SVE-2020-18467 (October 2020).
CVE-2020-26605
- EPSS 0.12%
- Veröffentlicht 06.10.2020 19:15:15
- Zuletzt bearbeitet 21.11.2024 05:20:08
An issue was discovered on Samsung mobile devices with Q(10.0) and R(11.0) (Exynos chipsets) software. They allow attackers to obtain sensitive information by reading a log. The Samsung ID is SVE-2020-18596 (October 2020).
CVE-2020-26606
- EPSS 0.12%
- Veröffentlicht 06.10.2020 19:15:15
- Zuletzt bearbeitet 21.11.2024 05:20:08
An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), Q(10.0), and R(11.0) software. An attacker can access certain Secure Folder content via a debugging command. The Samsung ID is SVE-2020-18673 (October 2020).
CVE-2020-26607
- EPSS 0.15%
- Veröffentlicht 06.10.2020 19:15:15
- Zuletzt bearbeitet 21.11.2024 05:20:09
An issue was discovered in TimaService on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) software. PendingIntent with an empty intent is mishandled, allowing an attacker to perform a privileged action via a modified intent. The Samsung ID is...
CVE-2020-26597
- EPSS 0.11%
- Veröffentlicht 06.10.2020 19:15:14
- Zuletzt bearbeitet 21.11.2024 05:20:07
An issue was discovered on LG mobile devices with Android OS 9.0 and 10 software. The Wi-Fi subsystem has incorrect input validation, leading to a crash. The LG ID is LVE-SMP-200022 (October 2020).
CVE-2020-26598
- EPSS 0.08%
- Veröffentlicht 06.10.2020 19:15:14
- Zuletzt bearbeitet 21.11.2024 05:20:07
An issue was discovered on LG mobile devices with Android OS 8.0, 8.1, and 9.0 software. The Network Management component could allow an unauthorized actor to kill a TCP connection. The LG ID is LVE-SMP-200023 (October 2020).
CVE-2020-26599
- EPSS 0.09%
- Veröffentlicht 06.10.2020 19:15:14
- Zuletzt bearbeitet 21.11.2024 05:20:07
An issue was discovered on Samsung mobile devices with Q(10.0) software. The DynamicLockscreen Terms and Conditions can be accepted without authentication. The Samsung ID is SVE-2020-17079 (October 2020).