CVE-2020-15583
- EPSS 0.02%
- Veröffentlicht 07.07.2020 14:15:12
- Zuletzt bearbeitet 21.11.2024 05:05:47
An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) software. StickerProvider allows directory traversal for access to system files. The Samsung ID is SVE-2020-17665 (July 2020).
CVE-2020-15584
- EPSS 0.05%
- Veröffentlicht 07.07.2020 14:15:12
- Zuletzt bearbeitet 21.11.2024 05:05:48
An issue was discovered on Samsung mobile devices with Q(10.0) software. Attackers can trigger an out-of-bounds access and device reset via a 4K wallpaper image because ImageProcessHelper mishandles boundary checks. The Samsung ID is SVE-2020-18056 (...
CVE-2020-0223
- EPSS 0.15%
- Veröffentlicht 16.06.2020 14:15:10
- Zuletzt bearbeitet 21.11.2024 04:53:08
This is an unbounded write into kernel global memory, via a user-controlled buffer size.Product: AndroidVersions: Android kernelAndroid ID: A-135130450
CVE-2020-0232
- EPSS 0.15%
- Veröffentlicht 16.06.2020 14:15:10
- Zuletzt bearbeitet 21.11.2024 04:53:09
Function abc_pcie_issue_dma_xfer_sync creates a transfer object, adds it to the session object then continues to work with it. A concurrent thread could retrieve created transfer object from the session object and delete it using abc_pcie_dma_user_xf...
CVE-2020-0234
- EPSS 0.02%
- Veröffentlicht 16.06.2020 14:15:10
- Zuletzt bearbeitet 21.11.2024 04:53:09
In crus_afe_get_param of msm-cirrus-playback.c, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for...
CVE-2020-0235
- EPSS 0.15%
- Veröffentlicht 16.06.2020 14:15:10
- Zuletzt bearbeitet 21.11.2024 04:53:09
In crus_sp_shared_ioctl we first copy 4 bytes from userdata into "size" variable, and then use that variable as the size parameter for "copy_from_user", ending up overwriting memory following "crus_sp_hdr". "crus_sp_hdr" is a static variable, of type...
CVE-2020-0213
- EPSS 0.41%
- Veröffentlicht 11.06.2020 15:15:18
- Zuletzt bearbeitet 21.11.2024 04:53:07
In hevcd_fmt_conv_420sp_to_420sp_av8 of ihevcd_fmt_conv_420sp_to_420sp.s, there is a possible out of bounds write due to a heap buffer overflow. This could lead to remote information disclosure with no additional execution privileges needed. User int...
CVE-2020-0214
- EPSS 0.31%
- Veröffentlicht 11.06.2020 15:15:18
- Zuletzt bearbeitet 21.11.2024 04:53:07
In ce_t4t_process_select_file_cmd of ce_t4t.cc, there is a possible out of bounds read due to an incorrect bounds check. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed f...
CVE-2020-0215
- EPSS 0.01%
- Veröffentlicht 11.06.2020 15:15:18
- Zuletzt bearbeitet 21.11.2024 04:53:07
In onCreate of ConfirmConnectActivity.java, there is a possible leak of Bluetooth information due to a permissions bypass. This could lead to local escalation of privilege that exposes a pairing Bluetooth MAC address with no additional execution priv...
CVE-2020-0216
- EPSS 0.02%
- Veröffentlicht 11.06.2020 15:15:18
- Zuletzt bearbeitet 21.11.2024 04:53:07
In phNciNfc_RecvMfResp of phNxpExtns_MifareStd.cpp, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for ex...