2020 CVE Vulnerabilities
21,070 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-0482 | MEDIUM | 4.4 | 0.2% | Dec 15, 2020 | In command of IncidentService.cpp, there is a possible out of bounds read due to an incorrect bounds check. This could l... |
| CVE-2020-0481 | LOW | 3.3 | 0.1% | Dec 15, 2020 | In AndroidManifest.xml, there is a possible permissions bypass. This could lead to local escalation of privilege allowin... |
| CVE-2020-0480 | HIGH | 7.8 | 0.4% | Dec 15, 2020 | In callUnchecked of DocumentsProvider.java, there is a possible permissions bypass due to a missing permission check. Th... |
| CVE-2020-0479 | HIGH | 7.8 | 0.4% | Dec 15, 2020 | In callUnchecked of DocumentsProvider.java, there is a possible permissions bypass. This could lead to local escalation ... |
| CVE-2020-0478 | HIGH | 7.8 | 0.5% | Dec 15, 2020 | In extend_frame_lowbd of restoration.c, there is a possible out of bounds write due to a missing bounds check. This coul... |
| CVE-2020-0477 | MEDIUM | 5.5 | 0.1% | Dec 15, 2020 | In sendLinkConfigurationChangedBroadcast of ClientModeImpl.java, there is a possible information disclosure due to a mis... |
| CVE-2020-0476 | MEDIUM | 4.4 | 0.1% | Dec 15, 2020 | In onNotificationRemoved of Assistant.java, there is a possible leak of sensitive information to logs. This could lead t... |
| CVE-2020-0475 | HIGH | 7.8 | 0.4% | Dec 15, 2020 | In createInputConsumer of WindowManagerService.java, there is a possible way to block and intercept input events due to ... |
| CVE-2020-0474 | HIGH | 7 | 0.1% | Dec 15, 2020 | In HalCamera::requestNewFrame of HalCamera.cpp, there is a possible use-after-free due to a race condition. This could l... |
| CVE-2020-0473 | MEDIUM | 4.6 | 0.1% | Dec 15, 2020 | In updateIncomingFileConfirmNotification of BluetoothOppNotification.java, there is a possible permissions bypass. This ... |
| CVE-2020-0368 | LOW | 3.3 | 0.1% | Dec 15, 2020 | In queryInternal of CallLogProvider.java, there is a possible permission bypass due to improper input validation. This c... |
| CVE-2020-0280 | MEDIUM | 5.5 | 0.2% | Dec 15, 2020 | In nci_proc_ee_management_rsp of nci_hrcv.cc, there is a possible out of bounds read due to a missing bounds check. This... |
| CVE-2020-0244 | MEDIUM | 5.5 | 0.4% | Dec 15, 2020 | In writeBurstBufferBytes of SPDIFEncoder.cpp, there is a possible out of bounds read due to an incorrect bounds check. T... |
| CVE-2020-8944 | MEDIUM | 5.5 | 0.2% | Dec 15, 2020 | An arbitrary memory write vulnerability in Asylo versions up to 0.6.0 allows an untrusted attacker to make a call to eca... |
| CVE-2020-8943 | MEDIUM | 5.5 | 0.1% | Dec 15, 2020 | An arbitrary memory read vulnerability in Asylo versions up to 0.6.0 allows an untrusted attacker to make a call to enc_... |
| CVE-2020-8942 | MEDIUM | 5.5 | 0.1% | Dec 15, 2020 | An arbitrary memory read vulnerability in Asylo versions up to 0.6.0 allows an untrusted attacker to make a call to enc_... |
| CVE-2020-8941 | MEDIUM | 5.5 | 0.1% | Dec 15, 2020 | An arbitrary memory read vulnerability in Asylo versions up to 0.6.0 allows an untrusted attacker to make a call to enc_... |
| CVE-2020-8940 | MEDIUM | 5.5 | 0.1% | Dec 15, 2020 | An arbitrary memory read vulnerability in Asylo versions up to 0.6.0 allows an untrusted attacker to make a call to enc_... |
| CVE-2020-8939 | MEDIUM | 5.5 | 0.1% | Dec 15, 2020 | An out of bounds read on the enc_untrusted_inet_ntop function allows an attack to extend the result size that is used by... |
| CVE-2020-8938 | LOW | 3.3 | 0.1% | Dec 15, 2020 | An arbitrary memory overwrite vulnerability in Asylo versions up to 0.6.0 allows an attacker to make a host call to From... |
| CVE-2020-8937 | LOW | 3.3 | 0.1% | Dec 15, 2020 | An arbitrary memory overwrite vulnerability in Asylo versions up to 0.6.0 allows an attacker to make a host call to enc_... |
| CVE-2020-8936 | MEDIUM | 5.5 | 0.1% | Dec 15, 2020 | An arbitrary memory overwrite vulnerability in Asylo versions up to 0.6.0 allows an attacker to make a host call to Untr... |
| CVE-2020-8935 | HIGH | 7.8 | 0.1% | Dec 15, 2020 | An arbitrary memory overwrite vulnerability in Asylo versions up to 0.6.0 allow an attacker to make an Ecall_restore fun... |
| CVE-2020-4849 | MEDIUM | 6.1 | 0.8% | Dec 15, 2020 | IBM Tivoli Netcool Impact 7.1.0.0 through 7.1.0.19 Interim Fix 7 could allow a remote attacker to bypass security restri... |
| CVE-2020-4747 | CRITICAL | 9.8 | 2.0% | Dec 15, 2020 | IBM Connect:Direct for UNIX 6.1.0, 6.0.0, 4.3.0, and 4.2.0 can allow a local or remote user to obtain an authenticated C... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now