CVE-2020-0217
- EPSS 0.76%
- Veröffentlicht 11.06.2020 15:15:18
- Zuletzt bearbeitet 21.11.2024 04:53:07
In RW_T4tPresenceCheck of rw_t4t.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.Produ...
- EPSS 0.01%
- Veröffentlicht 11.06.2020 15:15:18
- Zuletzt bearbeitet 21.11.2024 04:53:07
In loadSoundModel and related functions of SoundTriggerHwService.cpp, there is possible out of bounds write due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is ...
CVE-2020-0219
- EPSS 0.06%
- Veröffentlicht 11.06.2020 15:15:18
- Zuletzt bearbeitet 21.11.2024 04:53:07
In onCreate of SliceDeepLinkSpringBoard.java there is a possible insecure Intent. This could lead to local elevation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions...
CVE-2020-0233
- EPSS 0.02%
- Veröffentlicht 11.06.2020 15:15:18
- Zuletzt bearbeitet 21.11.2024 04:53:09
In main of main.cpp, there is possible memory corruption due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersion...
CVE-2020-0199
- EPSS 0.02%
- Veröffentlicht 11.06.2020 15:15:17
- Zuletzt bearbeitet 21.11.2024 04:53:05
In TimeCheck::TimeCheckThread::threadLoop of TimeCheck.cpp, there is a possible use-after-free due to a race condition. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploi...
CVE-2020-0200
- EPSS 0.24%
- Veröffentlicht 11.06.2020 15:15:17
- Zuletzt bearbeitet 21.11.2024 04:53:05
In ReadLittleEndian of raw_bit_reader.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure in the media server with no additional execution privileges needed. User interaction is n...
CVE-2020-0201
- EPSS 2.46%
- Veröffentlicht 11.06.2020 15:15:17
- Zuletzt bearbeitet 21.11.2024 04:53:05
In showSecurityFields of WifiConfigController.java there is a possible credential leak due to a confused deputy. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for expl...
CVE-2020-0202
- EPSS 0.05%
- Veröffentlicht 11.06.2020 15:15:17
- Zuletzt bearbeitet 21.11.2024 04:53:05
In onHandleIntent of TraceService.java, there is a possible bypass of developer settings requirements for capturing system traces due to a missing permission check. This could lead to local escalation of privilege with no additional execution privile...
CVE-2020-0203
- EPSS 0.02%
- Veröffentlicht 11.06.2020 15:15:17
- Zuletzt bearbeitet 21.11.2024 04:53:06
In freeIsolatedUidLocked of ProcessList.java, there is a possible UID reuse due to improper cleanup. This could lead to local escalation of privilege between constrained processes with no additional execution privileges needed. User interaction is no...
- EPSS 0.04%
- Veröffentlicht 11.06.2020 15:15:17
- Zuletzt bearbeitet 21.11.2024 04:53:06
In InstallPackage of package.cpp, there is a possible bypass of a signature check due to a Time of Check/Time of Use condition. This could lead to local escalation of privilege by allowing a bypass of the initial zip file signature check for an OS up...