2020 CVE Vulnerabilities
21,070 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-11181 | HIGH | 7.8 | 0.2% | Jan 21, 2021 | Out of bound access issue while handling cvp process control command due to improper validation of buffer pointer receiv... |
| CVE-2020-11180 | HIGH | 7.8 | 0.2% | Jan 21, 2021 | Out of bound access in computer vision control due to improper validation of command length before processing it in Snap... |
| CVE-2020-11179 | HIGH | 7 | 0.3% | Jan 21, 2021 | Arbitrary read and write to kernel addresses by temporarily overwriting ring buffer pointer and creating a race conditio... |
| CVE-2020-11167 | CRITICAL | 9.8 | 1.2% | Jan 21, 2021 | Memory corruption while calculating L2CAP packet length in reassembly logic when remote sends more data than expected in... |
| CVE-2020-11152 | MEDIUM | 6.4 | 0.1% | Jan 21, 2021 | Race condition in HAL layer while processing callback objects received from HIDL due to lack of synchronization between ... |
| CVE-2020-11151 | MEDIUM | 6.4 | 0.1% | Jan 21, 2021 | Race condition occurs while calling user space ioctl from two different threads can results to use after free issue in v... |
| CVE-2020-11150 | MEDIUM | 6.7 | 0.2% | Jan 21, 2021 | Out of bound memory access in camera driver due to improper validation on data coming from UMD which is used for offset ... |
| CVE-2020-11149 | MEDIUM | 6.7 | 0.2% | Jan 21, 2021 | Out of bound access due to usage of an out-of-range pointer offset in the camera driver. in Snapdragon Auto, Snapdragon ... |
| CVE-2020-11148 | MEDIUM | 6.7 | 0.2% | Jan 21, 2021 | Use after free issue in HIDL while using callback to post event in Rx thread when internal mutex is not acquired and mea... |
| CVE-2020-11146 | HIGH | 7.8 | 0.2% | Jan 21, 2021 | Out of bound write while copying data using IOCTL due to lack of check of array index received from user in Snapdragon A... |
| CVE-2020-11145 | HIGH | 7.5 | 0.8% | Jan 21, 2021 | Divide by zero issue can happen while updating delta extension header due to improper validation of master SN and extens... |
| CVE-2020-11144 | CRITICAL | 9.1 | 0.9% | Jan 21, 2021 | Buffer over-read while UE process invalid DL ROHC packet for decompression due to lack of check of size of compresses pa... |
| CVE-2020-11143 | CRITICAL | 9.8 | 1.1% | Jan 21, 2021 | Out of bound memory access during music playback with modified content due to copying data without checking destination ... |
| CVE-2020-11140 | CRITICAL | 9.8 | 1.1% | Jan 21, 2021 | Out of bound memory access during music playback with ALAC modified content due to improper validation in Snapdragon Aut... |
| CVE-2020-11139 | HIGH | 7.5 | 0.8% | Jan 21, 2021 | Out of bound memory access while processing frames due to lack of check of invalid frames received in Snapdragon Auto, S... |
| CVE-2020-11138 | CRITICAL | 9.8 | 1.1% | Jan 21, 2021 | Uninitialized pointers accessed during music play back with incorrect bit stream due to an uninitialized heap memory res... |
| CVE-2020-11137 | CRITICAL | 9.8 | 1.1% | Jan 21, 2021 | Integer multiplication overflow resulting in lower buffer size allocation than expected causes memory access out of boun... |
| CVE-2020-11136 | CRITICAL | 9.8 | 1.1% | Jan 21, 2021 | Buffer Over-read in audio driver while using malloc management function due to not returning NULL for zero sized memory ... |
| CVE-2020-11119 | HIGH | 7.5 | 0.8% | Jan 21, 2021 | Buffer over-read can happen when the buffer length received from response handlers is more than the size of the payload ... |
| CVE-2020-27221 | CRITICAL | 9.8 | 1.5% | Jan 21, 2021 | In Eclipse OpenJ9 up to and including version 0.23, there is potential for a stack-based buffer overflow when the virtua... |
| CVE-2020-26278 | HIGH | 8 | 0.7% | Jan 20, 2021 | Weave Net is open source software which creates a virtual network that connects Docker containers across multiple hosts ... |
| CVE-2020-26252 | HIGH | 7.2 | 2.1% | Jan 20, 2021 | OpenMage is a community-driven alternative to Magento CE. In OpenMage before versions 19.4.10 and 20.0.6, there is a vul... |
| CVE-2020-27859 | HIGH | 7.5 | 2.9% | Jan 20, 2021 | This vulnerability allows remote attackers to disclose sensitive information on affected installations of NEC ESMPRO Man... |
| CVE-2020-27858 | HIGH | 7.5 | 73.8% | Jan 20, 2021 | This vulnerability allows remote attackers to disclose sensitive information on affected installations of CA Arcserve D2... |
| CVE-2020-6024 | HIGH | 7.8 | 0.3% | Jan 20, 2021 | Check Point SmartConsole before R80.10 Build 185, R80.20 Build 119, R80.30 before Build 94, R80.40 before Build 415, and... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now