2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-26678HIGH8.8vFairs 3.3 is affected by Remote Code Execution. Any user logged in to a vFairs virtual conference or event can abuse th...
CVE-2020-26677HIGH8.8Any user logged in to a vFairs 3.3 virtual conference or event can perform SQL injection with a malicious query to the A...
CVE-2020-25669HIGH7.8A vulnerability was found in the Linux Kernel where the function sunkbd_reinit having been scheduled by sunkbd_interrupt...
CVE-2020-25668HIGH7A flaw was found in Linux Kernel because access to the global variable fg_console is not properly synchronized leading t...
CVE-2020-25673MEDIUM5.5A vulnerability was found in Linux kernel where non-blocking socket in llcp_sock_connect() leads to leak and eventually ...
CVE-2020-25671HIGH7.8A vulnerability was found in Linux Kernel, where a refcount leak in llcp_sock_connect() causing use-after-free which mig...
CVE-2020-25670HIGH7.8A vulnerability was found in Linux Kernel where refcount leak in llcp_sock_bind() causing use-after-free which might lea...
CVE-2020-25672HIGH7.5A memory leak vulnerability was found in Linux kernel in llcp_sock_connect
CVE-2020-20453MEDIUM6.5FFmpeg 4.2 is affected by a Divide By Zero issue via libavcodec/aaccoder, which allows a remote malicious user to cause ...
CVE-2020-20451HIGH7.5Denial of Service issue in FFmpeg 4.2 due to resource management errors via fftools/cmdutils.c.
CVE-2020-20450HIGH7.5FFmpeg 4.2 is affected by null pointer dereference passed as argument to libavformat/aviobuf.c, which could cause a Deni...
CVE-2020-20448MEDIUM6.5FFmpeg 4.1.3 is affected by a Divide By Zero issue via libavcodec/ratecontrol.c, which allows a remote malicious user to...
CVE-2020-20446MEDIUM6.5FFmpeg 4.2 is affected by a Divide By Zero issue via libavcodec/aacpsy.c, which allows a remote malicious user to cause ...
CVE-2020-20445MEDIUM6.5FFmpeg 4.2 is affected by a Divide By Zero issue via libavcodec/lpc.h, which allows a remote malicious user to cause a D...
CVE-2020-4839MEDIUM4.9IBM Host firmware for LC-class Systems is vulnerable to a stack based buffer overflow, caused by improper bounds checkin...
CVE-2020-13603HIGH7.8Integer Overflow in memory allocating functions. Zephyr versions >= 1.14.2, >= 2.4.0 contain Integer Overflow or Wraparo...
CVE-2020-13602MEDIUM5.5Remote Denial of Service in LwM2M do_write_op_tlv. Zephyr versions >= 1.14.2, >= 2.2.0 contain Improper Input Validation...
CVE-2020-13601CRITICAL9.8Possible read out of bounds in dns read. Zephyr versions >= 1.14.2, >= 2.3.0 contain Out-of-bounds Read (CWE-125). For m...
CVE-2020-13600HIGH7.6Malformed SPI in response for eswifi can corrupt kernel memory. Zephyr versions >= 1.14.2, >= 2.3.0 contain Heap-based B...
CVE-2020-13599LOW3.3Security problem with settings and littlefs. Zephyr versions >= 1.14.2, >= 2.3.0 contain Incorrect Default Permissions (...
CVE-2020-13598HIGH7.8FS: Buffer Overflow when enabling Long File Names in FAT_FS and calling fs_stat. Zephyr versions >= v1.14.2, >= v2.3.0 c...
CVE-2020-10072MEDIUM5.3Improper Handling of Insufficient Permissions or Privileges in zephyr. Zephyr versions >= v1.14.2, >= v2.2.0 contain Imp...
CVE-2020-10069MEDIUM6.5Zephyr Bluetooth unchecked packet data results in denial of service. Zephyr versions >= v1.14.2, >= v2.2.0 contain Impro...
CVE-2020-10066MEDIUM5.7Incorrect Error Handling in Bluetooth HCI core. Zephyr versions >= v1.14.2, >= v2.2.0 contain NULL Pointer Dereference (...
CVE-2020-10065HIGH8.8Missing Size Checks in Bluetooth HCI over SPI. Zephyr versions >= v1.14.2, >= v2.2.0 contain Improper Handling of Length...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now