2020 CVE Vulnerabilities

21,070 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-0482MEDIUM4.4In command of IncidentService.cpp, there is a possible out of bounds read due to an incorrect bounds check. This could l...
CVE-2020-0481LOW3.3In AndroidManifest.xml, there is a possible permissions bypass. This could lead to local escalation of privilege allowin...
CVE-2020-0480HIGH7.8In callUnchecked of DocumentsProvider.java, there is a possible permissions bypass due to a missing permission check. Th...
CVE-2020-0479HIGH7.8In callUnchecked of DocumentsProvider.java, there is a possible permissions bypass. This could lead to local escalation ...
CVE-2020-0478HIGH7.8In extend_frame_lowbd of restoration.c, there is a possible out of bounds write due to a missing bounds check. This coul...
CVE-2020-0477MEDIUM5.5In sendLinkConfigurationChangedBroadcast of ClientModeImpl.java, there is a possible information disclosure due to a mis...
CVE-2020-0476MEDIUM4.4In onNotificationRemoved of Assistant.java, there is a possible leak of sensitive information to logs. This could lead t...
CVE-2020-0475HIGH7.8In createInputConsumer of WindowManagerService.java, there is a possible way to block and intercept input events due to ...
CVE-2020-0474HIGH7In HalCamera::requestNewFrame of HalCamera.cpp, there is a possible use-after-free due to a race condition. This could l...
CVE-2020-0473MEDIUM4.6In updateIncomingFileConfirmNotification of BluetoothOppNotification.java, there is a possible permissions bypass. This ...
CVE-2020-0368LOW3.3In queryInternal of CallLogProvider.java, there is a possible permission bypass due to improper input validation. This c...
CVE-2020-0280MEDIUM5.5In nci_proc_ee_management_rsp of nci_hrcv.cc, there is a possible out of bounds read due to a missing bounds check. This...
CVE-2020-0244MEDIUM5.5In writeBurstBufferBytes of SPDIFEncoder.cpp, there is a possible out of bounds read due to an incorrect bounds check. T...
CVE-2020-8944MEDIUM5.5An arbitrary memory write vulnerability in Asylo versions up to 0.6.0 allows an untrusted attacker to make a call to eca...
CVE-2020-8943MEDIUM5.5An arbitrary memory read vulnerability in Asylo versions up to 0.6.0 allows an untrusted attacker to make a call to enc_...
CVE-2020-8942MEDIUM5.5An arbitrary memory read vulnerability in Asylo versions up to 0.6.0 allows an untrusted attacker to make a call to enc_...
CVE-2020-8941MEDIUM5.5An arbitrary memory read vulnerability in Asylo versions up to 0.6.0 allows an untrusted attacker to make a call to enc_...
CVE-2020-8940MEDIUM5.5An arbitrary memory read vulnerability in Asylo versions up to 0.6.0 allows an untrusted attacker to make a call to enc_...
CVE-2020-8939MEDIUM5.5An out of bounds read on the enc_untrusted_inet_ntop function allows an attack to extend the result size that is used by...
CVE-2020-8938LOW3.3An arbitrary memory overwrite vulnerability in Asylo versions up to 0.6.0 allows an attacker to make a host call to From...
CVE-2020-8937LOW3.3An arbitrary memory overwrite vulnerability in Asylo versions up to 0.6.0 allows an attacker to make a host call to enc_...
CVE-2020-8936MEDIUM5.5An arbitrary memory overwrite vulnerability in Asylo versions up to 0.6.0 allows an attacker to make a host call to Untr...
CVE-2020-8935HIGH7.8An arbitrary memory overwrite vulnerability in Asylo versions up to 0.6.0 allow an attacker to make an Ecall_restore fun...
CVE-2020-4849MEDIUM6.1IBM Tivoli Netcool Impact 7.1.0.0 through 7.1.0.19 Interim Fix 7 could allow a remote attacker to bypass security restri...
CVE-2020-4747CRITICAL9.8IBM Connect:Direct for UNIX 6.1.0, 6.0.0, 4.3.0, and 4.2.0 can allow a local or remote user to obtain an authenticated C...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now