CVE-2020-0393
- EPSS 0.02%
- Veröffentlicht 17.09.2020 16:15:13
- Zuletzt bearbeitet 21.11.2024 04:53:26
In decrypt and decrypt_1_2 of CryptoPlugin.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for e...
CVE-2020-0394
- EPSS 0.01%
- Veröffentlicht 17.09.2020 16:15:13
- Zuletzt bearbeitet 21.11.2024 04:53:26
In onCreate of BluetoothPairingDialog.java, there is a possible tapjacking vector due to an insecure default value. This could lead to local escalation of privilege and untrusted devices accessing contact lists with no additional execution privileges...
CVE-2020-0395
- EPSS 0.02%
- Veröffentlicht 17.09.2020 16:15:13
- Zuletzt bearbeitet 21.11.2024 04:53:26
In showNotification of EmergencyCallbackModeService.java, there is a possible permission bypass due to an unsafe PendingIntent. This could lead to local information disclosure with User execution privileges needed. User interaction is not needed for ...
CVE-2020-0396
- EPSS 0.01%
- Veröffentlicht 17.09.2020 16:15:13
- Zuletzt bearbeitet 21.11.2024 04:53:26
In various places in Telephony, there is a possible permission bypass due to an unsafe PendingIntent. This could lead to local information disclosure with User execution privileges needed. User interaction is not needed for exploitation.Product: Andr...
CVE-2020-0397
- EPSS 0.02%
- Veröffentlicht 17.09.2020 16:15:13
- Zuletzt bearbeitet 21.11.2024 04:53:26
In getNotificationBuilder of CarrierServiceStateTracker.java, there is a possible permission bypass due to an unsafe PendingIntent. This could lead to local information disclosure with User execution privileges needed. User interaction is not needed ...
CVE-2020-0399
- EPSS 0.02%
- Veröffentlicht 17.09.2020 16:15:13
- Zuletzt bearbeitet 21.11.2024 04:53:27
In showLimitedSimFunctionWarningNotification of NotificationMgr.java, there is a possible permission bypass due to an unsafe PendingIntent. This could lead to local information disclosure with User execution privileges needed. User interaction is not...
CVE-2020-0401
- EPSS 0.01%
- Veröffentlicht 17.09.2020 16:15:13
- Zuletzt bearbeitet 21.11.2024 04:53:27
In setInstallerPackageName of PackageManagerService.java, there is a missing permission check. This could lead to local escalation of privilege and granting spurious permissions with no additional execution privileges needed. User interaction is not ...
CVE-2020-0074
- EPSS 0.01%
- Veröffentlicht 17.09.2020 16:15:12
- Zuletzt bearbeitet 21.11.2024 04:52:51
In verifyIntentFiltersIfNeeded of PackageManagerService.java, there is a possible settings bypass allowing an app to become the default handler for arbitrary domains. This could lead to local escalation of privilege with User execution privileges nee...
- EPSS 0.14%
- Veröffentlicht 17.09.2020 16:15:12
- Zuletzt bearbeitet 21.11.2024 04:52:56
There is a possible out of bounds write due to an incorrect bounds check.Product: AndroidVersions: Android SoCAndroid ID: A-149871374
- EPSS 0.13%
- Veröffentlicht 17.09.2020 16:15:12
- Zuletzt bearbeitet 21.11.2024 04:53:08
There is a possible out of bounds write due to an incorrect bounds check.Product: AndroidVersions: Android SoCAndroid ID: A-156333725