2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-11258 | HIGH | 8.8 | 0.2% | Jun 9, 2021 | Memory corruption due to lack of validation of pointer arguments passed to Trustzone BSP in Snapdragon Wired Infrastruct... |
| CVE-2020-11257 | HIGH | 8.8 | 0.2% | Jun 9, 2021 | Memory corruption due to lack of validation of pointer arguments passed to TrustZone BSP in Snapdragon Wired Infrastruct... |
| CVE-2020-11256 | HIGH | 8.8 | 0.2% | Jun 9, 2021 | Memory corruption due to lack of check of validation of pointer to buffer passed to trustzone in Snapdragon Wired Infras... |
| CVE-2020-11250 | HIGH | 7 | 0.1% | Jun 9, 2021 | Use after free due to race condition when reopening the device driver repeatedly in Snapdragon Auto, Snapdragon Compute,... |
| CVE-2020-11241 | HIGH | 7.5 | 0.6% | Jun 9, 2021 | Out of bound read will happen if EAPOL Key length is less than expected while processing NAN shared key descriptor attri... |
| CVE-2020-11240 | HIGH | 7.8 | 0.2% | Jun 9, 2021 | Memory corruption due to ioctl command size was incorrectly set to the size of a pointer and not enough storage is alloc... |
| CVE-2020-11239 | HIGH | 7.8 | 0.2% | Jun 9, 2021 | Use after free issue when importing a DMA buffer by using the CPU address of the buffer due to attachment is not cleaned... |
| CVE-2020-11238 | HIGH | 7.5 | 0.6% | Jun 9, 2021 | Possible Buffer over-read in ARP/NS parsing due to lack of check of packet length received in Snapdragon Auto, Snapdrago... |
| CVE-2020-11235 | HIGH | 7.8 | 0.2% | Jun 9, 2021 | Buffer overflow might occur while parsing unified command due to lack of check of input data received in Snapdragon Auto... |
| CVE-2020-11233 | HIGH | 7 | 0.1% | Jun 9, 2021 | Time-of-check time-of-use race condition While processing partition entries due to newly created buffer was read again f... |
| CVE-2020-11178 | HIGH | 7.8 | 0.2% | Jun 9, 2021 | Trusted APPS to overwrite the CPZ memory of another use-case as TZ only checks the physical address not overlapping with... |
| CVE-2020-11165 | HIGH | 7.8 | 0.2% | Jun 9, 2021 | Memory corruption due to buffer overflow while copying the message provided by HLOS into buffer without validating the l... |
| CVE-2020-11161 | HIGH | 7.1 | 0.1% | Jun 9, 2021 | Out-of-bounds memory access can occur while calculating alignment requirements for a negative width from external compon... |
| CVE-2020-26516 | HIGH | 8.8 | 0.8% | Jun 8, 2021 | A CSRF issue was discovered in Intland codeBeamer ALM 10.x through 10.1.SP4. Requests sent to the server that trigger ac... |
| CVE-2020-26515 | HIGH | 7.5 | 0.5% | Jun 8, 2021 | An insufficiently protected credentials issue was discovered in Intland codeBeamer ALM 10.x through 10.1.SP4. The rememb... |
| CVE-2020-25716 | HIGH | 8.1 | 0.8% | Jun 7, 2021 | A flaw was found in Cloudforms. A role-based privileges escalation flaw where export or import of administrator files is... |
| CVE-2020-36387 | HIGH | 7.8 | 0.4% | Jun 7, 2021 | An issue was discovered in the Linux kernel before 5.8.2. fs/io_uring.c has a use-after-free related to io_async_task_fu... |
| CVE-2020-36386 | HIGH | 7.1 | 0.5% | Jun 7, 2021 | An issue was discovered in the Linux kernel before 5.8.1. net/bluetooth/hci_event.c has a slab out-of-bounds read in hci... |
| CVE-2020-1742 | HIGH | 7 | 0.3% | Jun 7, 2021 | An insecure modification vulnerability flaw was found in containers using nmstate/kubernetes-nmstate-handler. An attacke... |
| CVE-2020-18265 | HIGH | 8.8 | 1.1% | Jun 7, 2021 | Cross Site Request Forgery (CSRF) in Simple-Log v1.6 allows remote attackers to gain privilege and execute arbitrary cod... |
| CVE-2020-18264 | HIGH | 8.8 | 1.1% | Jun 7, 2021 | Cross Site Request Forgery (CSRF) in Simple-Log v1.6 allows remote attackers to gain privilege and execute arbitrary cod... |
| CVE-2020-36385 | HIGH | 7.8 | 1.5% | Jun 7, 2021 | An issue was discovered in the Linux kernel before 5.10. drivers/infiniband/core/ucma.c has a use-after-free because the... |
| CVE-2020-29324 | HIGH | 7.5 | 1.1% | Jun 4, 2021 | The DLink Router DIR-895L MFC v1.21b05 is vulnerable to credentials disclosure in telnet service through decompilation o... |
| CVE-2020-29323 | HIGH | 7.5 | 1.4% | Jun 4, 2021 | The D-link router DIR-885L-MFC 1.15b02, v1.21b05 is vulnerable to credentials disclosure in telnet service through decom... |
| CVE-2020-29322 | HIGH | 7.5 | 1.7% | Jun 4, 2021 | The D-Link router DIR-880L 1.07 is vulnerable to credentials disclosure in telnet service through decompilation of firmw... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now