2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-0426 | MEDIUM | 5.5 | 0.1% | Sep 17, 2020 | In SyncManager, there is a possible permission bypass due to an unsafe PendingIntent. This could lead to local informati... |
| CVE-2020-0425 | MEDIUM | 5.5 | 0.1% | Sep 17, 2020 | There is a possible way to view notifications even when the "Lockdown" feature is on. This could lead to local informati... |
| CVE-2020-0373 | MEDIUM | 4.7 | 0.1% | Sep 17, 2020 | In SoundTriggerHwService, there is a possible out of bounds read due to a race condition. This could lead to local infor... |
| CVE-2020-0372 | MEDIUM | 5.5 | 0.1% | Sep 17, 2020 | In ActivityManager, there is a possible access to protected data due to a missing permission check. This could lead to l... |
| CVE-2020-0370 | MEDIUM | 6.5 | 0.7% | Sep 17, 2020 | In libAACdec, there is a possible out of bounds read due to missing bounds check. This could lead to remote information ... |
| CVE-2020-0364 | MEDIUM | 6.5 | 0.8% | Sep 17, 2020 | In libDRCdec, there is a possible out of bounds read due to a missing bounds check. This could lead to remote informatio... |
| CVE-2020-0363 | MEDIUM | 6.5 | 0.6% | Sep 17, 2020 | In libmedia, there is a possible resource exhaustion due to improper input validation. This could lead to remote denial ... |
| CVE-2020-0362 | MEDIUM | 6.5 | 0.7% | Sep 17, 2020 | In libstagefright, there is a possible resource exhaustion due to improper input validation. This could lead to remote d... |
| CVE-2020-0361 | MEDIUM | 6.5 | 0.7% | Sep 17, 2020 | In libDRCdec, there is a possible information disclosure due to uninitialized data. This could lead to remote informatio... |
| CVE-2020-0359 | MEDIUM | 5.5 | 0.2% | Sep 17, 2020 | In GLESRenderEngine, there is a possible out of bounds read due to a buffer overflow. This could lead to local informati... |
| CVE-2020-0358 | MEDIUM | 6.4 | 0.1% | Sep 17, 2020 | In SurfaceFlinger, there is a possible use after free due to a race condition. This could lead to local escalation of pr... |
| CVE-2020-0356 | MEDIUM | 6.7 | 0.1% | Sep 17, 2020 | In the Audio HAL, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local esc... |
| CVE-2020-0355 | MEDIUM | 6.5 | 0.8% | Sep 17, 2020 | In libFraunhoferAAC, there is a possible out of bounds read due to a missing bounds check. This could lead to remote inf... |
| CVE-2020-0353 | MEDIUM | 6.5 | 0.7% | Sep 17, 2020 | In libmp4extractor, there is a possible resource exhaustion due to a missing bounds check. This could lead to remote den... |
| CVE-2020-0352 | MEDIUM | 5.5 | 0.2% | Sep 17, 2020 | In MediaProvider, there is a possible permissions bypass due to SQL injection. This could lead to local information disc... |
| CVE-2020-0351 | MEDIUM | 6.5 | 0.8% | Sep 17, 2020 | In libstagefright, there is possible CPU exhaustion due to improper input validation. This could lead to remote denial o... |
| CVE-2020-0344 | MEDIUM | 5.5 | 0.2% | Sep 17, 2020 | In MediaProvider, there is a possible permissions bypass due to SQL injection. This could lead to local information disc... |
| CVE-2020-0343 | MEDIUM | 5.5 | 0.1% | Sep 17, 2020 | In NetworkStatsService, there is a possible access to protected data due to a missing permission check. This could lead ... |
| CVE-2020-0340 | MEDIUM | 6.5 | 0.7% | Sep 17, 2020 | In libcodec2_soft_mp3dec, there is a possible information disclosure due to uninitialized data. This could lead to remot... |
| CVE-2020-0338 | MEDIUM | 5 | 0.2% | Sep 17, 2020 | In checkKeyIntent of AccountManagerService.java, there is a possible permission bypass. This could lead to local informa... |
| CVE-2020-0337 | MEDIUM | 5.5 | 0.1% | Sep 17, 2020 | In MediaProvider, there is a possible bypass of a permissions check due to a confused deputy. This could lead to local i... |
| CVE-2020-0336 | MEDIUM | 6.7 | 0.2% | Sep 17, 2020 | In SurfaceFlinger, there is possible memory corruption due to type confusion. This could lead to local escalation of pri... |
| CVE-2020-0332 | MEDIUM | 6.5 | 0.6% | Sep 17, 2020 | In libstagefright, there is a possible dead loop due to an uncaught exception. This could lead to remote denial of servi... |
| CVE-2020-0330 | MEDIUM | 6.7 | 0.1% | Sep 17, 2020 | In iorap, there is a possible memory corruption due to a use after free. This could lead to local escalation of privileg... |
| CVE-2020-0329 | MEDIUM | 5.5 | 0.1% | Sep 17, 2020 | In the OMX encoder, there is a possible out of bounds read due to invalid input validation. This could lead to local inf... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now