2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-27054 | HIGH | 7.8 | 0.1% | Dec 15, 2020 | In onFactoryReset of BluetoothManagerService.java, there is a missing permission check. This could lead to local escalat... |
| CVE-2020-27052 | HIGH | 7.8 | 0.1% | Dec 15, 2020 | In getLockTaskLaunchMode of ActivityRecord.java, there is a possible way for any app to start in Lock Task Mode due to a... |
| CVE-2020-27051 | HIGH | 7.8 | 0.4% | Dec 15, 2020 | In NFA_RwI93WriteMultipleBlocks of nfa_rw_api.cc, there is a possible out of bounds write due to an integer overflow. Th... |
| CVE-2020-27050 | HIGH | 7.8 | 0.4% | Dec 15, 2020 | In rw_i93_send_cmd_write_multi_blocks of rw_i93.cc, there is a possible out of bounds write due to a heap buffer overflo... |
| CVE-2020-27049 | HIGH | 7.8 | 0.4% | Dec 15, 2020 | In rw_t3t_send_raw_frame of rw_t3t.cc, there is a possible out of bounds write due to a missing bounds check. This could... |
| CVE-2020-27048 | HIGH | 7.8 | 0.4% | Dec 15, 2020 | In RW_SendRawFrame of rw_main.cc, there is a possible out of bounds write due to a missing bounds check. This could lead... |
| CVE-2020-27045 | HIGH | 7.8 | 0.4% | Dec 15, 2020 | In CE_SendRawFrame of ce_main.cc, there is a possible out of bounds write due to a heap buffer overflow. This could lead... |
| CVE-2020-27044 | HIGH | 7.8 | 0.1% | Dec 15, 2020 | In restartWrite of Parcel.cpp, there is a possible memory corruption due to a use after free. This could lead to local e... |
| CVE-2020-25712 | HIGH | 7.8 | 0.3% | Dec 15, 2020 | A flaw was found in xorg-x11-server before 1.20.10. A heap-buffer overflow in XkbSetDeviceInfo may lead to a privilege e... |
| CVE-2020-27030 | HIGH | 7.8 | 0.1% | Dec 15, 2020 | In onCreate of HandleApiCalls.java, there is a possible permission bypass due to a confused deputy. This could lead to l... |
| CVE-2020-27024 | HIGH | 7.5 | 0.9% | Dec 15, 2020 | In smp_br_state_machine_event of smp_br_main.cc, there is a possible out of bounds read due to a missing bounds check. T... |
| CVE-2020-0489 | HIGH | 8.8 | 0.7% | Dec 15, 2020 | In Parse_data of eas_mdls.c, there is a possible out of bounds write due to a missing bounds check. This could lead to r... |
| CVE-2020-0486 | HIGH | 7.8 | 0.1% | Dec 15, 2020 | In openAssetFileListener of ContactsProvider2.java, there is a possible permission bypass due to an insecure default val... |
| CVE-2020-0485 | HIGH | 7.8 | 0.1% | Dec 15, 2020 | In areFunctionsSupported of UsbBackend.java, there is a possible access to tethering from a guest account due to a missi... |
| CVE-2020-0480 | HIGH | 7.8 | 0.4% | Dec 15, 2020 | In callUnchecked of DocumentsProvider.java, there is a possible permissions bypass due to a missing permission check. Th... |
| CVE-2020-0479 | HIGH | 7.8 | 0.4% | Dec 15, 2020 | In callUnchecked of DocumentsProvider.java, there is a possible permissions bypass. This could lead to local escalation ... |
| CVE-2020-0478 | HIGH | 7.8 | 0.5% | Dec 15, 2020 | In extend_frame_lowbd of restoration.c, there is a possible out of bounds write due to a missing bounds check. This coul... |
| CVE-2020-0475 | HIGH | 7.8 | 0.4% | Dec 15, 2020 | In createInputConsumer of WindowManagerService.java, there is a possible way to block and intercept input events due to ... |
| CVE-2020-0474 | HIGH | 7 | 0.1% | Dec 15, 2020 | In HalCamera::requestNewFrame of HalCamera.cpp, there is a possible use-after-free due to a race condition. This could l... |
| CVE-2020-8935 | HIGH | 7.8 | 0.1% | Dec 15, 2020 | An arbitrary memory overwrite vulnerability in Asylo versions up to 0.6.0 allow an attacker to make an Ecall_restore fun... |
| CVE-2020-35471 | HIGH | 7.5 | 2.4% | Dec 15, 2020 | Envoy before 1.16.1 mishandles dropped and truncated datagrams, as demonstrated by a segmentation fault for a UDP packet... |
| CVE-2020-35470 | HIGH | 8.8 | 1.0% | Dec 15, 2020 | Envoy before 1.16.1 logs an incorrect downstream address because it considers only the directly connected peer, not the ... |
| CVE-2020-35457 | HIGH | 7.8 | 0.6% | Dec 14, 2020 | GNOME GLib before 2.65.3 has an integer overflow, that might lead to an out-of-bounds write, in g_option_group_add_entri... |
| CVE-2020-0016 | HIGH | 7.8 | 0.2% | Dec 14, 2020 | In the Broadcom Nexus firmware, there is an insecure default password. This could lead to local escalation of privilege ... |
| CVE-2020-0466 | HIGH | 7.8 | 0.3% | Dec 14, 2020 | In do_epoll_ctl and ep_loop_check_proc of eventpoll.c, there is a possible use after free due to a logic error. This cou... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now