2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-0491 | MEDIUM | 6.5 | 0.7% | Dec 15, 2020 | In readBlock of MatroskaExtractor.cpp, there is a possible denial of service due to resource exhaustion. This could lead... |
| CVE-2020-0490 | MEDIUM | 6.5 | 0.7% | Dec 15, 2020 | In floor1_info_unpack of floor1.c, there is a possible out of bounds read due to a missing bounds check. This could lead... |
| CVE-2020-0488 | MEDIUM | 6.5 | 0.7% | Dec 15, 2020 | In ihevc_inter_pred_chroma_copy_ssse3 of ihevc_inter_pred_filters_ssse3_intr.c, there is a possible information disclosu... |
| CVE-2020-0484 | MEDIUM | 6.7 | 0.1% | Dec 15, 2020 | In destroyResources of ComposerClient.h, there is possible memory corruption due to a use after free. This could lead to... |
| CVE-2020-0483 | MEDIUM | 6.7 | 0.1% | Dec 15, 2020 | In DrmManagerService::~DrmManagerService() of DrmManagerService.cpp, there is a possible memory corruption due to a use ... |
| CVE-2020-0482 | MEDIUM | 4.4 | 0.2% | Dec 15, 2020 | In command of IncidentService.cpp, there is a possible out of bounds read due to an incorrect bounds check. This could l... |
| CVE-2020-0477 | MEDIUM | 5.5 | 0.1% | Dec 15, 2020 | In sendLinkConfigurationChangedBroadcast of ClientModeImpl.java, there is a possible information disclosure due to a mis... |
| CVE-2020-0476 | MEDIUM | 4.4 | 0.1% | Dec 15, 2020 | In onNotificationRemoved of Assistant.java, there is a possible leak of sensitive information to logs. This could lead t... |
| CVE-2020-0473 | MEDIUM | 4.6 | 0.1% | Dec 15, 2020 | In updateIncomingFileConfirmNotification of BluetoothOppNotification.java, there is a possible permissions bypass. This ... |
| CVE-2020-0280 | MEDIUM | 5.5 | 0.2% | Dec 15, 2020 | In nci_proc_ee_management_rsp of nci_hrcv.cc, there is a possible out of bounds read due to a missing bounds check. This... |
| CVE-2020-0244 | MEDIUM | 5.5 | 0.4% | Dec 15, 2020 | In writeBurstBufferBytes of SPDIFEncoder.cpp, there is a possible out of bounds read due to an incorrect bounds check. T... |
| CVE-2020-8944 | MEDIUM | 5.5 | 0.2% | Dec 15, 2020 | An arbitrary memory write vulnerability in Asylo versions up to 0.6.0 allows an untrusted attacker to make a call to eca... |
| CVE-2020-8943 | MEDIUM | 5.5 | 0.1% | Dec 15, 2020 | An arbitrary memory read vulnerability in Asylo versions up to 0.6.0 allows an untrusted attacker to make a call to enc_... |
| CVE-2020-8942 | MEDIUM | 5.5 | 0.1% | Dec 15, 2020 | An arbitrary memory read vulnerability in Asylo versions up to 0.6.0 allows an untrusted attacker to make a call to enc_... |
| CVE-2020-8941 | MEDIUM | 5.5 | 0.1% | Dec 15, 2020 | An arbitrary memory read vulnerability in Asylo versions up to 0.6.0 allows an untrusted attacker to make a call to enc_... |
| CVE-2020-8940 | MEDIUM | 5.5 | 0.1% | Dec 15, 2020 | An arbitrary memory read vulnerability in Asylo versions up to 0.6.0 allows an untrusted attacker to make a call to enc_... |
| CVE-2020-8939 | MEDIUM | 5.5 | 0.1% | Dec 15, 2020 | An out of bounds read on the enc_untrusted_inet_ntop function allows an attack to extend the result size that is used by... |
| CVE-2020-8936 | MEDIUM | 5.5 | 0.1% | Dec 15, 2020 | An arbitrary memory overwrite vulnerability in Asylo versions up to 0.6.0 allows an attacker to make a host call to Untr... |
| CVE-2020-4849 | MEDIUM | 6.1 | 0.8% | Dec 15, 2020 | IBM Tivoli Netcool Impact 7.1.0.0 through 7.1.0.19 Interim Fix 7 could allow a remote attacker to bypass security restri... |
| CVE-2020-28203 | MEDIUM | 5.5 | 1.9% | Dec 15, 2020 | An issue was discovered in Foxit Reader and PhantomPDF 10.1.0.37527 and earlier. There is a null pointer access/derefere... |
| CVE-2020-35460 | MEDIUM | 5.3 | 1.8% | Dec 14, 2020 | common/InputStreamHelper.java in Packwood MPXJ before 8.3.5 allows directory traversal in the zip stream handler flow, l... |
| CVE-2020-0019 | MEDIUM | 5.5 | 0.2% | Dec 14, 2020 | In the Broadcom Nexus firmware, there is an insecure default password. This could lead to local information disclosure i... |
| CVE-2020-0470 | MEDIUM | 5.5 | 0.7% | Dec 14, 2020 | In extend_frame_highbd of restoration.c, there is a possible out of bounds write due to a heap buffer overflow. This cou... |
| CVE-2020-0469 | MEDIUM | 5.5 | 0.1% | Dec 14, 2020 | In addEscrowToken of LockSettingsService.java, there is a possible loss of the synthetic password due to logic error. Th... |
| CVE-2020-0468 | MEDIUM | 5.5 | 0.1% | Dec 14, 2020 | In listen() and related functions of TelephonyRegistry.java, there is a possible permissions bypass of location permissi... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now