2020 CVE Vulnerabilities
21,074 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-0393 | MEDIUM | 5.5 | 0.2% | Sep 17, 2020 | In decrypt and decrypt_1_2 of CryptoPlugin.cpp, there is a possible out of bounds read due to a missing bounds check. Th... |
| CVE-2020-0392 | HIGH | 7.8 | 0.3% | Sep 17, 2020 | In getLayerDebugInfo of SurfaceFlinger.cpp, there is a possible code execution due to a double free. This could lead to ... |
| CVE-2020-0391 | HIGH | 7.8 | 0.4% | Sep 17, 2020 | In applyPolicy of PackageManagerService.java, there is possible arbitrary command execution as System due to an unenforc... |
| CVE-2020-0390 | MEDIUM | 5.5 | 0.1% | Sep 17, 2020 | In the app zygote SE Policy, there is a possible permissions bypass. This could lead to local information disclosure wit... |
| CVE-2020-0389 | MEDIUM | 5.5 | 0.2% | Sep 17, 2020 | In createSaveNotification of RecordingService.java, there is a possible permission bypass due to an unsafe PendingIntent... |
| CVE-2020-0388 | HIGH | 7.8 | 0.2% | Sep 17, 2020 | In createEmergencyLocationUserNotification of GnssVisibilityControl.java, there is a possible permissions bypass due to ... |
| CVE-2020-0386 | MEDIUM | 5.5 | 0.4% | Sep 17, 2020 | In onCreate of RequestPermissionActivity.java, there is a possible tapjacking vector due to an insecure default value. T... |
| CVE-2020-0385 | MEDIUM | 5.5 | 0.6% | Sep 17, 2020 | In Parse_insh of eas_mdls.c, there is a possible out of bounds write due to an incorrect bounds check. This could lead t... |
| CVE-2020-0384 | MEDIUM | 5.5 | 0.6% | Sep 17, 2020 | In Parse_art of eas_mdls.c, there is a possible out of bounds write due to an incorrect bounds check. This could lead to... |
| CVE-2020-0383 | MEDIUM | 5.5 | 0.6% | Sep 17, 2020 | In Parse_ins of eas_mdls.c, there is a possible out of bounds write due to a missing bounds check. This could lead to re... |
| CVE-2020-0382 | LOW | 2.3 | 0.2% | Sep 17, 2020 | In RunInternal of dumpstate.cpp, there is a possible user consent bypass due to an uncaught exception. This could lead t... |
| CVE-2020-0381 | HIGH | 7.5 | 1.5% | Sep 17, 2020 | In Parse_wave of eas_mdls.c, there is a possible out of bounds write due to an integer overflow. This could lead to remo... |
| CVE-2020-0380 | CRITICAL | 9.8 | 2.8% | Sep 17, 2020 | In allocExcessBits of bitalloc.c, there is a possible out of bounds write due to an incorrect bounds check. This could l... |
| CVE-2020-0379 | MEDIUM | 5.7 | 0.3% | Sep 17, 2020 | In the Bluetooth service, there is a possible spoofing attack due to a logic error. This could lead to remote informatio... |
| CVE-2020-0342 | CRITICAL | 9.8 | 0.6% | Sep 17, 2020 | There is a possible out of bounds write due to an incorrect bounds check.Product: AndroidVersions: Android SoCAndroid ID... |
| CVE-2020-0278 | CRITICAL | 9.8 | 0.6% | Sep 17, 2020 | There is a possible out of bounds write due to an incorrect bounds check.Product: AndroidVersions: Android SoCAndroid ID... |
| CVE-2020-0245 | HIGH | 8.8 | 2.1% | Sep 17, 2020 | In DecodeFrameCombinedMode of combined_decode.cpp, there is a possible out of bounds write due to a heap buffer overflow... |
| CVE-2020-0229 | CRITICAL | 9.8 | 0.6% | Sep 17, 2020 | There is a possible out of bounds write due to an incorrect bounds check.Product: AndroidVersions: Android SoCAndroid ID... |
| CVE-2020-0123 | CRITICAL | 9.8 | 0.6% | Sep 17, 2020 | There is a possible out of bounds write due to an incorrect bounds check.Product: AndroidVersions: Android SoCAndroid ID... |
| CVE-2020-0074 | HIGH | 7.8 | 0.2% | Sep 17, 2020 | In verifyIntentFiltersIfNeeded of PackageManagerService.java, there is a possible settings bypass allowing an app to bec... |
| CVE-2020-14338 | MEDIUM | 5.3 | 1.3% | Sep 17, 2020 | A flaw was found in Wildfly's implementation of Xerces, specifically in the way the XMLSchemaValidator class in the JAXP... |
| CVE-2020-13944 | MEDIUM | 6.1 | 25.1% | Sep 17, 2020 | In Apache Airflow < 1.10.12, the "origin" parameter passed to some of the endpoints like '/trigger' was vulnerable to XS... |
| CVE-2020-6116 | HIGH | 7.8 | 28.4% | Sep 17, 2020 | An arbitrary code execution vulnerability exists in the rendering functionality of Nitro Software, Inc.’s Nitro Pro 13.1... |
| CVE-2020-6115 | HIGH | 7.8 | 2.7% | Sep 17, 2020 | An exploitable vulnerability exists in the cross-reference table repairing functionality of Nitro Software, Inc.’s Nitro... |
| CVE-2020-6113 | HIGH | 7.8 | 68.6% | Sep 17, 2020 | An exploitable vulnerability exists in the object stream parsing functionality of Nitro Software, Inc.’s Nitro Pro 13.13... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now