2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2020-27054HIGH7.8In onFactoryReset of BluetoothManagerService.java, there is a missing permission check. This could lead to local escalat...
CVE-2020-27052HIGH7.8In getLockTaskLaunchMode of ActivityRecord.java, there is a possible way for any app to start in Lock Task Mode due to a...
CVE-2020-27051HIGH7.8In NFA_RwI93WriteMultipleBlocks of nfa_rw_api.cc, there is a possible out of bounds write due to an integer overflow. Th...
CVE-2020-27050HIGH7.8In rw_i93_send_cmd_write_multi_blocks of rw_i93.cc, there is a possible out of bounds write due to a heap buffer overflo...
CVE-2020-27049HIGH7.8In rw_t3t_send_raw_frame of rw_t3t.cc, there is a possible out of bounds write due to a missing bounds check. This could...
CVE-2020-27048HIGH7.8In RW_SendRawFrame of rw_main.cc, there is a possible out of bounds write due to a missing bounds check. This could lead...
CVE-2020-27045HIGH7.8In CE_SendRawFrame of ce_main.cc, there is a possible out of bounds write due to a heap buffer overflow. This could lead...
CVE-2020-27044HIGH7.8In restartWrite of Parcel.cpp, there is a possible memory corruption due to a use after free. This could lead to local e...
CVE-2020-25712HIGH7.8A flaw was found in xorg-x11-server before 1.20.10. A heap-buffer overflow in XkbSetDeviceInfo may lead to a privilege e...
CVE-2020-27030HIGH7.8In onCreate of HandleApiCalls.java, there is a possible permission bypass due to a confused deputy. This could lead to l...
CVE-2020-27024HIGH7.5In smp_br_state_machine_event of smp_br_main.cc, there is a possible out of bounds read due to a missing bounds check. T...
CVE-2020-0489HIGH8.8In Parse_data of eas_mdls.c, there is a possible out of bounds write due to a missing bounds check. This could lead to r...
CVE-2020-0486HIGH7.8In openAssetFileListener of ContactsProvider2.java, there is a possible permission bypass due to an insecure default val...
CVE-2020-0485HIGH7.8In areFunctionsSupported of UsbBackend.java, there is a possible access to tethering from a guest account due to a missi...
CVE-2020-0480HIGH7.8In callUnchecked of DocumentsProvider.java, there is a possible permissions bypass due to a missing permission check. Th...
CVE-2020-0479HIGH7.8In callUnchecked of DocumentsProvider.java, there is a possible permissions bypass. This could lead to local escalation ...
CVE-2020-0478HIGH7.8In extend_frame_lowbd of restoration.c, there is a possible out of bounds write due to a missing bounds check. This coul...
CVE-2020-0475HIGH7.8In createInputConsumer of WindowManagerService.java, there is a possible way to block and intercept input events due to ...
CVE-2020-0474HIGH7In HalCamera::requestNewFrame of HalCamera.cpp, there is a possible use-after-free due to a race condition. This could l...
CVE-2020-8935HIGH7.8An arbitrary memory overwrite vulnerability in Asylo versions up to 0.6.0 allow an attacker to make an Ecall_restore fun...
CVE-2020-35471HIGH7.5Envoy before 1.16.1 mishandles dropped and truncated datagrams, as demonstrated by a segmentation fault for a UDP packet...
CVE-2020-35470HIGH8.8Envoy before 1.16.1 logs an incorrect downstream address because it considers only the directly connected peer, not the ...
CVE-2020-35457HIGH7.8GNOME GLib before 2.65.3 has an integer overflow, that might lead to an out-of-bounds write, in g_option_group_add_entri...
CVE-2020-0016HIGH7.8In the Broadcom Nexus firmware, there is an insecure default password. This could lead to local escalation of privilege ...
CVE-2020-0466HIGH7.8In do_epoll_ctl and ep_loop_check_proc of eventpoll.c, there is a possible use after free due to a logic error. This cou...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now