2020 CVE Vulnerabilities

21,074 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-0337MEDIUM5.5In MediaProvider, there is a possible bypass of a permissions check due to a confused deputy. This could lead to local i...
CVE-2020-0336MEDIUM6.7In SurfaceFlinger, there is possible memory corruption due to type confusion. This could lead to local escalation of pri...
CVE-2020-0333CRITICAL9.8In UrlQuerySanitizer, there is a possible improper input validation. This could lead to remote code execution with no ad...
CVE-2020-0332MEDIUM6.5In libstagefright, there is a possible dead loop due to an uncaught exception. This could lead to remote denial of servi...
CVE-2020-0330MEDIUM6.7In iorap, there is a possible memory corruption due to a use after free. This could lead to local escalation of privileg...
CVE-2020-0329MEDIUM5.5In the OMX encoder, there is a possible out of bounds read due to invalid input validation. This could lead to local inf...
CVE-2020-0328MEDIUM4.4In the camera, there is a possible out of bounds read due to an integer overflow. This could lead to local information d...
CVE-2020-0324MEDIUM6.5In libsonivox, there is a possible out of bounds read due to a missing bounds check. This could lead to remote informati...
CVE-2020-0323MEDIUM5.5In libavb, there is a possible out of bounds read due to a missing bounds check. This could lead to local information di...
CVE-2020-0322MEDIUM4.4In apexd, there is a possible out of bounds read due to a missing bounds check. This could lead to local information dis...
CVE-2020-0321HIGH8.8In the mp3 extractor, there is a possible out of bounds write due to uninitialized data. This could lead to remote code ...
CVE-2020-0320MEDIUM6.5In libstagefright, there is a possible resource exhaustion due to improper input validation. This could lead to remote d...
CVE-2020-0317MEDIUM5.5In UsageStatsManager, there is a possible access to protected data due to a missing permission check. This could lead to...
CVE-2020-0314MEDIUM5.5In AudioService, there are missing permission checks. This could lead to local information disclosure of audio configura...
CVE-2020-0312MEDIUM5.5In Battery Saver, there is a possible permission bypass due to an unsafe PendingIntent. This could lead to local informa...
CVE-2020-0308MEDIUM5.5In Window Manager, there is a possible permission bypass due to an unsafe PendingIntent. This could lead to local inform...
CVE-2020-0306HIGH7.8In LLVM, there is a possible ineffective stack cookie placement due to stack frame double reservation. This could lead t...
CVE-2020-0303HIGH8.8In the Media extractor, there is a possible use after free due to improper locking. This could lead to remote code execu...
CVE-2020-0301MEDIUM6.5In libstagefright, there is a possible resource exhaustion due to improper input validation. This could lead to remote d...
CVE-2020-0297MEDIUM5.5In devicepolicy service, there is a possible permission bypass due to an unsafe PendingIntent. This could lead to local ...
CVE-2020-0296MEDIUM5.5In ADB server and USB server, there is a possible permission bypass due to an unsafe PendingIntent. This could lead to l...
CVE-2020-0293MEDIUM5.5In Java network APIs, there is possible access to sensitive network state due to a missing permission check. This could ...
CVE-2020-0290MEDIUM5.5In PackageManager, there is a missing permission check. This could lead to local information disclosure across users wit...
CVE-2020-0289MEDIUM5.5In PackageManager, there is a missing permission check. This could lead to local information disclosure across users wit...
CVE-2020-0288MEDIUM5.5In PackageManager, there is a missing permission check. This could lead to local information disclosure across user boun...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now