- EPSS 2.28%
- Veröffentlicht 17.04.2020 19:15:13
- Zuletzt bearbeitet 21.11.2024 04:52:51
In rw_t2t_handle_tlv_detect_rsp of rw_t2t_ndef.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution over NFC with no additional execution privileges needed. User interaction is not needed...
CVE-2020-0075
- EPSS 0.04%
- Veröffentlicht 17.04.2020 19:15:13
- Zuletzt bearbeitet 21.11.2024 04:52:51
In set_shared_key of the FPC IRIS TrustZone app, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploit...
CVE-2020-0076
- EPSS 0.04%
- Veröffentlicht 17.04.2020 19:15:13
- Zuletzt bearbeitet 21.11.2024 04:52:51
In get_auth_result of the FPC IRIS TrustZone app, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for expl...
CVE-2020-0077
- EPSS 0.04%
- Veröffentlicht 17.04.2020 19:15:13
- Zuletzt bearbeitet 21.11.2024 04:52:51
In authorize_enroll of the FPC IRIS TrustZone app, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for explo...
CVE-2020-0078
- EPSS 0.03%
- Veröffentlicht 17.04.2020 19:15:13
- Zuletzt bearbeitet 21.11.2024 04:52:51
In releaseSecureStops of DrmPlugin.cpp, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploit...
CVE-2020-0079
- EPSS 0.03%
- Veröffentlicht 17.04.2020 19:15:13
- Zuletzt bearbeitet 21.11.2024 04:52:52
In decrypt_1_2 of CryptoPlugin.cpp, there is a possible out of bounds write due to stale pointer. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product...
CVE-2020-0080
- EPSS 0.09%
- Veröffentlicht 17.04.2020 19:15:13
- Zuletzt bearbeitet 21.11.2024 04:52:52
In onOpActiveChanged and related methods of AppOpsControllerImpl.java, there is a possible way to display an app overlaying other apps without the notification icon that it's overlaying. This could lead to local escalation of privilege with User exec...
CVE-2020-0081
- EPSS 0.05%
- Veröffentlicht 17.04.2020 19:15:13
- Zuletzt bearbeitet 21.11.2024 04:52:52
In finalize of AssetManager.java, there is possible memory corruption due to a double free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: Andr...
CVE-2020-0082
- EPSS 0.21%
- Veröffentlicht 17.04.2020 19:15:13
- Zuletzt bearbeitet 21.11.2024 04:52:52
In ExternalVibration of ExternalVibration.java, there is a possible activation of an arbitrary intent due to unsafe deserialization. This could lead to local escalation of privilege to system_server with no additional execution privileges needed. Use...
CVE-2020-11873
- EPSS 0.16%
- Veröffentlicht 17.04.2020 14:15:18
- Zuletzt bearbeitet 21.11.2024 04:58:47
An issue was discovered on LG mobile devices with Android OS 7.2, 8.0, 8.1, 9, and 10 software. A stack-based buffer overflow in the logging tool could allow an attacker to gain privileges. The LG ID is LVE-SMP-200005 (April 2020).