ID | Summary | Flags | Max Score |
---|---|---|---|
CVE-2020-0001 | In getProcessRecordLocked of ActivityManagerService.java isolated apps are not handled correctly. Th... | | |
CVE-2020-0002 | In ih264d_init_decoder of ih264d_api.c, there is a possible out of bounds write due to a use after f... | S | |
CVE-2020-0003 | In onCreate of InstallStart.java, there is a possible package validation bypass due to a time-of-che... | | |
CVE-2020-0004 | In generateCrop of WallpaperManagerService.java, there is a possible sysui crash due to image exceed... | S | |
CVE-2020-0005 | In btm_read_remote_ext_features_complete of btm_acl.cc, there is a possible out of bounds write due ... | S | |
CVE-2020-0006 | In rw_i93_send_cmd_write_single_block of rw_i93.cc, there is a possible information disclosure of he... | S | |
CVE-2020-0007 | In flattenString8 of Sensor.cpp, there is a possible information disclosure of heap memory due to un... | | |
CVE-2020-0008 | In LowEnergyClient::MtuChangedCallback of low_energy_client.cc, there is a possible out of bounds re... | S | |
CVE-2020-0009 | In calc_vm_may_flags of ashmem.c, there is a possible arbitrary write to shared memory due to a perm... | S | |
CVE-2020-0010 | In fpc_ta_get_build_info of fpc_ta_kpi.c, there is a possible out of bounds write due to a missing b... | | |
CVE-2020-0011 | In get_auth_result of fpc_ta_hw_auth.c, there is a possible out of bounds write due to a missing bou... | | |
CVE-2020-0012 | In fpc_ta_pn_get_unencrypted_image of fpc_ta_pn.c, there is a possible out of bounds write due to a ... | | |
CVE-2020-0014 | It is possible for a malicious application to construct a TYPE_TOAST window manually and make that w... | | |
CVE-2020-0015 | In onCreate of CertInstaller.java, there is a possible way to overlay the Certificate Installation d... | S | |
CVE-2020-0016 | In the Broadcom Nexus firmware, there is an insecure default password. This could lead to local esca... | | |
CVE-2020-0017 | In multiple places, it was possible for the primary user’s dictionary to be visible to and modifiabl... | S | |
CVE-2020-0018 | In MotionEntry::appendDescription of InputDispatcher.cpp, there is a possible log information disclo... | S | |
CVE-2020-0019 | In the Broadcom Nexus firmware, there is an insecure default password. This could lead to local info... | | |
CVE-2020-0020 | In getAttributeRange of ExifInterface.java, there is a possible failure to redact location informati... | S | |
CVE-2020-0021 | In removeUnusedPackagesLPw of PackageManagerService.java, there is a possible permanent denial-of-se... | S | |
CVE-2020-0022 | In reassemble_and_dispatch of packet_fragmenter.cc, there is possible out of bounds write due to an ... | E S | |
CVE-2020-0023 | In setPhonebookAccessPermission of AdapterService.java, there is a possible disclosure of user conta... | S | |
CVE-2020-0024 | In onCreate of SettingsBaseActivity.java, there is a possible unauthorized setting modification due ... | S | |
CVE-2020-0025 | In deletePackageVersionedInternal of PackageManagerService.java, there is a possible way to exit Scr... | S | |
CVE-2020-0026 | In Parcel::continueWrite of Parcel.cpp, there is possible memory corruption due to a use after free.... | S | |
CVE-2020-0027 | In HidRawSensor::batch of HidRawSensor.cpp, there is a possible out of bounds write due to an unexpe... | S | |
CVE-2020-0028 | In notifyNetworkTested and related functions of NetworkMonitor.java, there is a possible bypass of p... | S | |
CVE-2020-0029 | In the WifiConfigManager, there is a possible storage of location history which can only be deleted ... | | |
CVE-2020-0030 | In binder_thread_release of binder.c, there is a possible use after free due to a race condition. Th... | S | |
CVE-2020-0031 | In triggerAugmentedAutofillLocked and related functions of Session.java, it is possible for Augmente... | | |
CVE-2020-0032 | In ih264d_release_display_bufs of ih264d_utils.c, there is a possible out of bounds write due to a h... | | |
CVE-2020-0033 | In CryptoPlugin::decrypt of CryptoPlugin.cpp, there is a possible out of bounds write due to stale p... | | |
CVE-2020-0034 | In vp8_decode_frame of decodeframe.c, there is a possible out of bounds read due to improper input v... | | |
CVE-2020-0035 | In query of TelephonyProvider.java, there is a possible access to SIM card info due to a missing per... | | |
CVE-2020-0036 | In hasPermissions of PermissionMonitor.java, there is a possible access to restricted permissions du... | | |
CVE-2020-0037 | In rw_i93_sm_set_read_only of rw_i93.cc, there is a possible out of bounds read due to a missing bou... | | |
CVE-2020-0038 | In rw_i93_sm_update_ndef of rw_i93.cc, there is a possible read of uninitialized data due to a missi... | | |
CVE-2020-0039 | In rw_i93_sm_update_ndef of rw_i93.cc, there is a possible read of uninitialized data due to a missi... | | |
CVE-2020-0040 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.... | R | |
CVE-2020-0041 | In binder_transaction of binder.c, there is a possible out of bounds write due to an incorrect bound... | KEV | |
CVE-2020-0042 | In fpc_ta_hw_auth_unwrap_key of fpc_ta_hw_auth_qsee.c, there is a possible out of bounds read due to... | | |
CVE-2020-0043 | In authorize_enrol of fpc_ta_hw_auth.c, there is a possible out of bounds read due to a missing boun... | | |
CVE-2020-0044 | In set_nonce of fpc_ta_qc_auth.c, there is a possible out of bounds read due to a missing bounds che... | | |
CVE-2020-0045 | In StatsService::command of StatsService.cpp, there is possible memory corruption due to a race cond... | | |
CVE-2020-0046 | In DrmPlugin::releaseSecureStops of DrmPlugin.cpp, there is a possible out of bounds write due to a ... | | |
CVE-2020-0047 | In setMasterMute of AudioService.java, there is a missing permission check. This could lead to local... | | |
CVE-2020-0048 | In onTransact of IAudioFlinger.cpp, there is a possible stack information leak due to uninitialized ... | | |
CVE-2020-0049 | In onReadBuffer() of StreamingSource.cpp, there is a possible information disclosure due to uninitia... | | |
CVE-2020-0050 | In nfa_hciu_send_msg of nfa_hci_utils.cc, there is a possible out of bounds write due to improper in... | S | |
CVE-2020-0051 | In onCreate of SettingsHomepageActivity, there is a possible tapjacking attack. This could lead to l... | S | |
CVE-2020-0052 | In smsSelected of AnswerFragment.java, there is a way to send an SMS from the lock screen due to a p... | S | |
CVE-2020-0053 | In convertHidlNanDataPathInitiatorRequestToLegacy, and convertHidlNanDataPathIndicationResponseToLeg... | S | |
CVE-2020-0054 | In WifiNetworkSuggestionsManager of WifiNetworkSuggestionsManager.java, there is a possible permissi... | S | |
CVE-2020-0055 | In l2c_link_process_num_completed_pkts of l2c_link.cc, there is a possible out of bounds read due to... | | |
CVE-2020-0056 | In btu_hcif_connection_comp_evt of btu_hcif.cc, there is a possible out of bounds read due to a miss... | | |
CVE-2020-0057 | In btm_process_inq_results of btm_inq.cc, there is a possible out of bounds read due to a missing bo... | | |
CVE-2020-0058 | In l2c_rcv_acl_data of l2c_main.cc, there is a possible out of bounds read due to an incorrect bound... | | |
CVE-2020-0059 | In btm_ble_batchscan_filter_track_adv_vse_cback of btm_ble_batchscan.cc, there is a possible out of ... | | |
CVE-2020-0060 | In query of SmsProvider.java and MmsSmsProvider.java, there is a possible permission bypass due to S... | | |
CVE-2020-0061 | In Pixel Recorder, there is a possible permissions bypass allowing arbitrary apps to record audio. T... | | |
CVE-2020-0062 | In Euicc, there is a possible information disclosure due to an included test Certificate. This could... | | |
CVE-2020-0063 | In SurfaceFlinger, it is possible to override UI confirmation screen protected by the TEE. This coul... | | |
CVE-2020-0064 | An improper authorization while processing the provisioning data.Product: AndroidVersions: Android S... | | |
CVE-2020-0065 | An improper authorization in the receiver component of the Android Suite Daemon.Product: AndroidVers... | | |
CVE-2020-0066 | In the netlink driver, there is a possible out of bounds write due to a race condition. This could l... | | |
CVE-2020-0067 | In f2fs_xattr_generic_list of xattr.c, there is a possible out of bounds read due to a missing bound... | | |
CVE-2020-0068 | In crus_afe_get_param of msm-cirrus-playback.c, there is a possible out of bounds read due to an int... | | |
CVE-2020-0069 | In the ioctl handlers of the Mediatek Command Queue driver, there is a possible out of bounds write ... | KEV | |
CVE-2020-0070 | In rw_t2t_update_lock_attributes of rw_t2t_ndef.cc, there is a possible out of bounds write due to a... | | |
CVE-2020-0071 | In rw_t2t_extract_default_locks_info of rw_t2t_ndef.cc, there is a possible out of bounds write due ... | | |
CVE-2020-0072 | In rw_t2t_handle_tlv_detect_rsp of rw_t2t_ndef.cc, there is a possible out of bounds write due to a ... | | |
CVE-2020-0073 | In rw_t2t_handle_tlv_detect_rsp of rw_t2t_ndef.cc, there is a possible out of bounds write due to a ... | | |
CVE-2020-0074 | In verifyIntentFiltersIfNeeded of PackageManagerService.java, there is a possible settings bypass al... | S | |
CVE-2020-0075 | In set_shared_key of the FPC IRIS TrustZone app, there is a possible out of bounds read due to a mis... | | |
CVE-2020-0076 | In get_auth_result of the FPC IRIS TrustZone app, there is a possible out of bounds write due to a m... | | |
CVE-2020-0077 | In authorize_enroll of the FPC IRIS TrustZone app, there is a possible out of bounds read due to a m... | | |
CVE-2020-0078 | In releaseSecureStops of DrmPlugin.cpp, there is a possible out of bounds write due to a missing bou... | | |
CVE-2020-0079 | In decrypt_1_2 of CryptoPlugin.cpp, there is a possible out of bounds write due to stale pointer. Th... | | |
CVE-2020-0080 | In onOpActiveChanged and related methods of AppOpsControllerImpl.java, there is a possible way to di... | | |
CVE-2020-0081 | In finalize of AssetManager.java, there is possible memory corruption due to a double free. This cou... | | |
CVE-2020-0082 | In ExternalVibration of ExternalVibration.java, there is a possible activation of an arbitrary inten... | | |
CVE-2020-0083 | In setRequirePmfInternal of sta_network.cpp, there is a possible default value being improperly appl... | | |
CVE-2020-0084 | In several functions of NotificationManagerService.java, there are missing permission checks. This c... | | |
CVE-2020-0085 | In setBluetoothTethering of PanService.java, there is a possible permission bypass due to a missing ... | | |
CVE-2020-0086 | In readCString of Parcel.cpp, there is a possible out of bounds write due to an integer overflow. Th... | | |
CVE-2020-0087 | In getProcessPss of ActivityManagerService.java, there is a possible side channel information disclo... | | |
CVE-2020-0088 | In parseTrackFragmentRun of MPEG4Extractor.cpp, there is possible resource exhaustion due to imprope... | | |
CVE-2020-0089 | In the audio server, there is a missing permission check. This could lead to local escalation of pri... | | |
CVE-2020-0090 | An improper authorization in the receiver component of Email.Product: AndroidVersions: Android SoCAn... | | |
CVE-2020-0091 | In mnld, an incorrect configuration in driver_cfg of mnld for meta factory mode.Product: AndroidVers... | | |
CVE-2020-0092 | In setHideSensitive of NotificationStackScrollLayout.java, there is a possible disclosure of sensiti... | S | |
CVE-2020-0093 | In exif_data_save_data_entry of exif-data.c, there is a possible out of bounds read due to a missing... | S | |
CVE-2020-0094 | In setImageHeight and setImageWidth of ExifUtils.cpp, there is a possible out of bounds write due to... | S | |
CVE-2020-0096 | In startActivities of ActivityStartController.java, there is a possible escalation of privilege due ... | S | |
CVE-2020-0097 | In various methods of PackageManagerService.java, there is a possible permission bypass due to a mis... | S | |
CVE-2020-0098 | In navigateUpToLocked of ActivityStack.java, there is a possible permission bypass due to a confused... | S | |
CVE-2020-0099 | In addWindow of WindowManagerService.java, there is a possible window overlay attack due to an insec... | S | |
CVE-2020-0100 | In onTransact of IHDCP.cpp, there is a possible out of bounds read due to incorrect error handling. ... | S | |
CVE-2020-0101 | In BnCrypto::onTransact of ICrypto.cpp, there is a possible information disclosure due to uninitiali... | S | |
CVE-2020-0102 | In GattServer::SendResponse of gatt_server.cc, there is a possible out of bounds write due to an inc... | S | |
CVE-2020-0103 | In a2dp_aac_decoder_cleanup of a2dp_aac_decoder.cc, there is a possible invalid free due to memory c... | S | |
CVE-2020-0104 | In onShowingStateChanged of KeyguardStateMonitor.java, there is a possible inappropriate read due to... | S | |
CVE-2020-0105 | In onKeyguardVisibilityChanged of key_store_service.cpp, there is a missing permission check. This c... | S | |
CVE-2020-0106 | In getCellLocation of PhoneInterfaceManager.java, there is a possible permission bypass due to a mis... | | |
CVE-2020-0107 | In getUiccCardsInfo of PhoneInterfaceManager.java, there is a possible permissions bypass due to imp... | S | |
CVE-2020-0108 | In postNotification of ServiceRecord.java, there is a possible bypass of foreground process restrict... | | |
CVE-2020-0109 | In simulatePackageSuspendBroadcast of NotificationManagerService.java, there is a missing permission... | S | |
CVE-2020-0110 | In psi_write of psi.c, there is a possible out of bounds write due to a missing bounds check. This c... | S | |
CVE-2020-0113 | In sendCaptureResult of Camera3OutputUtils.cpp, there is a possible out of bounds read due to a use ... | S | |
CVE-2020-0114 | In onCreateSliceProvider of KeyguardSliceProvider.java, there is a possible confused deputy due to a... | S | |
CVE-2020-0115 | In verifyIntentFiltersIfNeeded of PackageManagerService.java, there is a possible settings bypass al... | S | |
CVE-2020-0116 | In checkSystemLocationAccess of LocationAccessPolicy.java, there is a possible bypass of user profil... | S | |
CVE-2020-0117 | In aes_cmac of aes_cmac.cc, there is a possible out of bounds write due to an integer overflow. This... | S | |
CVE-2020-0118 | In addListener of RegionSamplingThread.cpp, there is a possible out of bounds write due to improper ... | S | |
CVE-2020-0119 | In addOrUpdateNetworkInternal and related functions of WifiConfigManager.java, there is a possible m... | S | |
CVE-2020-0120 | In notifyErrorForPendingRequests of QCamera3HWI.cpp, there is a possible out of bounds write due to ... | | |
CVE-2020-0121 | In updateUidProcState of AppOpsService.java, there is a possible permission bypass due to a logic er... | S | |
CVE-2020-0122 | In the permission declaration for com.google.android.providers.gsf.permission.WRITE_GSERVICES in And... | S | |
CVE-2020-0123 | There is a possible out of bounds write due to an incorrect bounds check.Product: AndroidVersions: A... | | |
CVE-2020-0124 | In markBootComplete of InstalldNativeService.cpp, there is a possible out of bounds write due to a m... | S | |
CVE-2020-0125 | In mediadrm, there is a possible out of bounds read due to a missing bounds check. This could lead t... | | |
CVE-2020-0126 | In multiple functions in DrmPlugin.cpp, there is a possible use after free due to a race condition. ... | S | |
CVE-2020-0127 | In AudioStream::decode of AudioGroup.cpp, there is a possible out of bounds read due to a missing bo... | S | |
CVE-2020-0128 | In addPacket of AMPEG4ElementaryAssembler, there is an out of bounds read due to an integer overflow... | S | |
CVE-2020-0129 | In SetData of btm_ble_multi_adv.cc, there is a possible out-of-bound write due to an incorrect bound... | S | |
CVE-2020-0130 | In screencap, there is a possible command injection due to improper input validation. This could lea... | | |
CVE-2020-0131 | In parseChunk of MPEG4Extractor.cpp, there is a possible out of bounds write due to incompletely ini... | S | |
CVE-2020-0132 | In BnAAudioService::onTransact of IAAudioService.cpp, there is a possible out of bounds read due to ... | S | |
CVE-2020-0133 | In MockLocationAppPreferenceController.java, it is possible to mock the GPS location of the device d... | S | |
CVE-2020-0134 | In BnDrm::onTransact of IDrm.cpp, there is a possible information disclosure due to uninitialized da... | S | |
CVE-2020-0135 | In dump of RollbackManagerServiceImpl.java, there is a possible backup metadata exposure due to a mi... | S | |
CVE-2020-0136 | In multiple locations of Parcel.cpp, there is a possible out-of-bounds write due to an integer overf... | S | |
CVE-2020-0137 | In setIPv6AddrGenMode of NetworkManagementService.java, there is a possible bypass of networking per... | S | |
CVE-2020-0138 | In get_element_attr_rsp of btif_rc.cc, there is a possible out of bounds write due to a missing boun... | S | |
CVE-2020-0139 | In NDEF_MsgValidate of ndef_utils.c, there is a possible out of bounds read due to an integer overfl... | S | |
CVE-2020-0140 | In rw_i93_sm_detect_ndef of rw_i93.c, there is a possible information disclosure due to a missing bo... | S | |
CVE-2020-0141 | In OutputBuffersArray::realloc of CCodecBuffers.cpp, there is a possible heap disclosure due to a ra... | S | |
CVE-2020-0142 | In rw_i93_sm_format of rw_i93.c, there is a possible information disclosure due to a missing bounds ... | S | |
CVE-2020-0143 | In nfa_dm_ndef_find_next_handler of nfa_dm_ndef.c, there is a possible out of bounds read due to a m... | S | |
CVE-2020-0144 | In btm_proc_sp_req_evt of btm_sec.cc, there is a possible out of bounds read due to a missing bounds... | S | |
CVE-2020-0145 | In btm_simple_pair_complete of btm_sec.cc, there is a possible out of bounds read due to a missing b... | S | |
CVE-2020-0146 | In btu_hcif_hardware_error_evt of btu_hcif.cc, there is a possible out of bounds read due to a missi... | S | |
CVE-2020-0147 | In btu_hcif_esco_connection_chg_evt of btu_hcif.cc, there is a possible out of bounds read due to a ... | S | |
CVE-2020-0148 | In btu_hcif_pin_code_request_evt, btu_hcif_link_key_request_evt, and btu_hcif_link_key_notification_... | S | |
CVE-2020-0149 | In btu_hcif_mode_change_evt of btu_hcif.cc, there is a possible out of bounds read due to a missing ... | S | |
CVE-2020-0150 | In rw_t3t_message_set_block_list of rw_t3t.cc, there is a possible out of bounds write due to a miss... | S | |
CVE-2020-0151 | In avb_vbmeta_image_verify of avb_vbmeta_image.c there is a possible out of bounds read due to a mis... | S | |
CVE-2020-0152 | In avb_vbmeta_image_verify of avb_vbmeta_image.c, there is a possible out of bounds read due to a mi... | S | |
CVE-2020-0153 | In phNxpNciHal_write_ext of phNxpNciHal_ext.cc, there is a possible out of bounds write due to a mis... | S | |
CVE-2020-0154 | In nci_proc_core_rsp of nci_hrcv.cc, there is a possible out of bounds read due to an incorrect boun... | S | |
CVE-2020-0155 | In phNxpNciHal_send_ese_hal_cmd of phNxpNciHal_ext.cc, there is a possible out of bounds write due t... | S | |
CVE-2020-0156 | In NxpNfc::ioctl of NxpNfc.cpp, there is a possible out of bounds read due to a missing bounds check... | S | |
CVE-2020-0157 | In nfa_hci_conn_cback of nfa_hci_main.cc, there is a possible out of bounds read due to a missing bo... | S | |
CVE-2020-0158 | In nfc_ncif_proc_t3t_polling_ntf of nfc_ncif.cc, there is a possible out of bounds read due to a mis... | S | |
CVE-2020-0159 | In rw_mfc_writeBlock of rw_mfc.cc, there is a possible out of bounds read due to an incorrect bounds... | S | |
CVE-2020-0160 | In setSyncSampleParams of SampleTable.cpp, there is possible resource exhaustion due to a missing bo... | S | |
CVE-2020-0161 | In parseChunk of MPEG4Extractor.cpp, there is possible resource exhaustion due to improper input val... | S | |
CVE-2020-0162 | In parseSampleAuxiliaryInformationOffsets of MPEG4Extractor.cpp, there is possible resource exhausti... | S | |
CVE-2020-0163 | In parseSampleAuxiliaryInformationSizes of MPEG4Extractor.cpp, there is possible resource exhaustion... | S | |
CVE-2020-0164 | In phNxpNciHal_NfcDep_cmd_ext of phNxpNciHal_NfcDepSWPrio.cc, there is a possible out of bounds read... | E | |
CVE-2020-0165 | In phNxpNciHal_NfcDep_cmd_ext of phNxpNciHal_NfcDepSWPrio.cc, there is a possible out of bounds writ... | S | |
CVE-2020-0166 | In multiple functions of URI.java, there is a possible escalation of privilege due to missing valida... | S | |
CVE-2020-0167 | In load of ResourceTypes.cpp, there is a possible out of bounds read due to an integer overflow. Thi... | S | |
CVE-2020-0168 | In impeg2_fmt_conv_yuv420p_to_yuv420sp_uv of impeg2_format_conv.c, there is a possible out of bounds... | S | |
CVE-2020-0169 | In RTTTL_Event of eas_rtttl.c, there is possible resource exhaustion due to a missing bounds check. ... | S | |
CVE-2020-0170 | In IMY_Event of eas_imelody.c, there is possible resource exhaustion due to a missing bounds check. ... | S | |
CVE-2020-0171 | In Parse_lart of eas_mdls.c, there is possible resource exhaustion due to a missing bounds check. Th... | S | |
CVE-2020-0172 | In Parse_art of eas_mdls.c, there is possible resource exhaustion due to a missing bounds check. Thi... | S | |
CVE-2020-0173 | In Parse_lins of eas_mdls.c, there is possible resource exhaustion due to improper input validation.... | S | |
CVE-2020-0174 | In Parse_ptbl of eas_mdls.c, there is possible resource exhaustion due to a missing bounds check. Th... | S | |
CVE-2020-0175 | In XMF_ReadNode of eas_xmf.c, there is possible resource exhaustion due to improper input validation... | S | |
CVE-2020-0176 | In avdt_msg_prs_rej of avdt_msg.cc, there is a possible out-of-bounds read due to improper input val... | S | |
CVE-2020-0177 | In connect() of PanService.java, there is a possible permissions bypass. This could lead to local es... | S | |
CVE-2020-0178 | In getAllConfigFlags of SettingsProvider.cpp, there is a possible illegal read due to a missing perm... | S | |
CVE-2020-0179 | In doSendObjectInfo of MtpServer.cpp, there is a possible path traversal attack due to insufficient ... | S | |
CVE-2020-0180 | In GetOpusHeaderBuffers() of OpusHeader.cpp, there is a possible out of bounds read due to a missing... | S | |
CVE-2020-0181 | In exif_data_load_data_thumbnail of exif-data.c, there is a possible denial of service due to an int... | S | |
CVE-2020-0182 | In exif_entry_get_value of exif-entry.c, there is a possible out of bounds read due to a missing bou... | S | |
CVE-2020-0183 | In handleMessage of BluetoothManagerService, there is an incomplete reset. This could lead to local ... | S | |
CVE-2020-0184 | In ihevcd_ref_list() of ihevcd_ref_list.c, there is a possible infinite loop due to a missing bounds... | S | |
CVE-2020-0185 | In avrc_pars_browsing_cmd of avrc_pars_tg.cc, there is a possible out of bounds read due to a missin... | S | |
CVE-2020-0186 | In hal_fd_init of hal_fd.cc, there is a possible out of bounds write due to an incorrect bounds chec... | S | |
CVE-2020-0187 | In engineSetMode of BaseBlockCipher.java, there is a possible incorrect cryptographic algorithm chos... | S | |
CVE-2020-0188 | In onCreatePermissionRequest of SettingsSliceProvider.java, there is a possible permissions bypass d... | S | |
CVE-2020-0189 | In ihevcd_decode() of ihevcd_decode.c, there is possible resource exhaustion due to an infinite loop... | S | |
CVE-2020-0190 | In ideint_weave_blk of ideint_utils.c, there is a possible out of bounds write due to a heap buffer ... | S | |
CVE-2020-0191 | In ih264d_update_default_index_list() of ih264d_dpb_mgr.c, there is a possible out of bounds read du... | S | |
CVE-2020-0192 | In ih264d_decode_slice_thread of ih264d_thread_parse_decode.c, there is a possible out of bounds rea... | S | |
CVE-2020-0193 | In ihevc_intra_pred_chroma_mode_3_to_9_av8 of ihevc_intra_pred_chroma_mode_3_to_9.s, there is a poss... | S | |
CVE-2020-0194 | In ihevcd_parse_slice_header of ihevcd_parse_slice_header.c, there is a possible out of bounds write... | S | |
CVE-2020-0195 | In ihevcd_iquant_itrans_recon_ctb of ihevcd_iquant_itrans_recon_ctb.c and related functions, there i... | S | |
CVE-2020-0196 | In RegisterNotificationResponse::GetEvent of register_notification_packet.cc, there is a possible ab... | S | |
CVE-2020-0197 | In InitDataParser::parsePssh of InitDataParser.cpp, there is a possible out of bounds read due to a ... | S | |
CVE-2020-0198 | In exif_data_load_data_content of exif-data.c, there is a possible UBSAN abort due to an integer ove... | S | |
CVE-2020-0199 | In TimeCheck::TimeCheckThread::threadLoop of TimeCheck.cpp, there is a possible use-after-free due t... | S | |
CVE-2020-0200 | In ReadLittleEndian of raw_bit_reader.cc, there is a possible out of bounds read due to a missing bo... | S | |
CVE-2020-0201 | In showSecurityFields of WifiConfigController.java there is a possible credential leak due to a conf... | S | |
CVE-2020-0202 | In onHandleIntent of TraceService.java, there is a possible bypass of developer settings requirement... | S | |
CVE-2020-0203 | In freeIsolatedUidLocked of ProcessList.java, there is a possible UID reuse due to improper cleanup.... | S | |
CVE-2020-0204 | In InstallPackage of package.cpp, there is a possible bypass of a signature check due to a Time of C... | S | |
CVE-2020-0205 | In the DaalaBitReader constructor of entropy_decoder.cc, there is a possible out of bounds read due ... | S | |
CVE-2020-0206 | In the settings app, there is a possible app crash due to improper input validation. This could lead... | S | |
CVE-2020-0207 | In next_marker of jdmarker.c, there is a possible out of bounds read due to improper input validatio... | S | |
CVE-2020-0208 | In multiple functions of AccountManager.java, there is a possible permissions bypass. This could lea... | S | |
CVE-2020-0209 | In multiple functions of AccountManager.java, there is a possible permissions bypass. This could lea... | S | |
CVE-2020-0210 | In removeSharedAccountAsUser of AccountManager.java, there is a possible permissions bypass to a con... | S | |
CVE-2020-0211 | In SumCompoundHorizontalTaps of convolve_neon.cc, there is a possible out of bounds read due to a mi... | S | |
CVE-2020-0212 | In _onBufferDestroyed of InputBufferManager.cpp, there is a possible out of bounds read due to a use... | S | |
CVE-2020-0213 | In hevcd_fmt_conv_420sp_to_420sp_av8 of ihevcd_fmt_conv_420sp_to_420sp.s, there is a possible out of... | | |
CVE-2020-0214 | In ce_t4t_process_select_file_cmd of ce_t4t.cc, there is a possible out of bounds read due to an inc... | S | |
CVE-2020-0215 | In onCreate of ConfirmConnectActivity.java, there is a possible leak of Bluetooth information due to... | | |
CVE-2020-0216 | In phNciNfc_RecvMfResp of phNxpExtns_MifareStd.cpp, there is a possible out of bounds write due to a... | S | |
CVE-2020-0217 | In RW_T4tPresenceCheck of rw_t4t.cc, there is a possible out of bounds write due to a missing bounds... | S | |
CVE-2020-0218 | In loadSoundModel and related functions of SoundTriggerHwService.cpp, there is possible out of bound... | S | |
CVE-2020-0219 | In onCreate of SliceDeepLinkSpringBoard.java there is a possible insecure Intent. This could lead to... | S | |
CVE-2020-0220 | In crus_afe_callback of msm-cirrus-playback.c, there is a possible out of bounds write due to a miss... | | |
CVE-2020-0221 | Airbrush FW's scratch memory allocator is susceptible to numeric overflow. When the overflow occurs,... | | |
CVE-2020-0223 | This is an unbounded write into kernel global memory, via a user-controlled buffer size.Product: And... | | |
CVE-2020-0224 | In FastKeyAccumulator::GetKeysSlow of keys.cc, there is a possible out of bounds write due to type c... | S | |
CVE-2020-0225 | In a2dp_vendor_ldac_decoder_decode_packet of a2dp_vendor_ldac_decoder.cc, there is a possible out of... | S | |
CVE-2020-0226 | In createWithSurfaceParent of Client.cpp, there is a possible out of bounds write due to type confus... | S | |
CVE-2020-0227 | In onCommand of CompanionDeviceManagerService.java, there is a possible permissions bypass due to a ... | S | |
CVE-2020-0228 | There is an improper configuration of recorder related service. Product: AndroidVersions: Android So... | | |
CVE-2020-0229 | There is a possible out of bounds write due to an incorrect bounds check.Product: AndroidVersions: A... | | |
CVE-2020-0230 | There is a possible out of bounds write due to an incorrect bounds check. Product: AndroidVersions: ... | | |
CVE-2020-0231 | There is a possible out of bounds write due to an incorrect bounds check. Product: AndroidVersions: ... | | |
CVE-2020-0232 | Function abc_pcie_issue_dma_xfer_sync creates a transfer object, adds it to the session object then ... | | |
CVE-2020-0233 | In main of main.cpp, there is possible memory corruption due to a use after free. This could lead to... | S | |
CVE-2020-0234 | In crus_afe_get_param of msm-cirrus-playback.c, there is a possible out of bounds write due to a mis... | | |
CVE-2020-0235 | In crus_sp_shared_ioctl we first copy 4 bytes from userdata into "size" variable, and then use that ... | | |
CVE-2020-0236 | In A2DP_GetCodecType of a2dp_codec_config, there is a possible out-of-bounds read due to improper in... | | |
CVE-2020-0237 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was with... | R | |
CVE-2020-0238 | In updatePreferenceIntents of AccountTypePreferenceLoader, there is a possible confused deputy attac... | | |
CVE-2020-0239 | In getDocumentMetadata of DocumentsContract.java, there is a possible disclosure of location metadat... | | |
CVE-2020-0240 | In NewFixedDoubleArray of factory.cc, there is a possible out of bounds write due to an integer over... | | |
CVE-2020-0241 | In NuPlayerStreamListener of NuPlayerStreamListener.cpp, there is possible memory corruption due to ... | | |
CVE-2020-0242 | In reset of NuPlayerDriver.cpp, there is a possible use-after-free due to improper locking. This cou... | | |
CVE-2020-0243 | In clearPropValue of MediaAnalyticsItem.cpp, there is a possible use-after-free due to improper lock... | | |
CVE-2020-0244 | In writeBurstBufferBytes of SPDIFEncoder.cpp, there is a possible out of bounds read due to an incor... | S | |
CVE-2020-0245 | In DecodeFrameCombinedMode of combined_decode.cpp, there is a possible out of bounds write due to a ... | S | |
CVE-2020-0246 | In getCarrierPrivilegeStatus of UiccAccessRule.java, there is a missing permission check. This could... | | |
CVE-2020-0247 | In Threshold::getHistogram of ImageProcessHelper.java, there is a possible crash loop due to an unca... | | |
CVE-2020-0248 | In postInstantAppNotif of InstantAppNotifier.java, there is a possible permission bypass due to a Pe... | | |
CVE-2020-0249 | In postInstantAppNotif of InstantAppNotifier.java, there is a possible permission bypass due to a Pe... | | |
CVE-2020-0250 | In requestCellInfoUpdateInternal of PhoneInterfaceManager.java, there is a missing permission check.... | | |
CVE-2020-0251 | There is a possible out of bounds read due to an incorrect bounds check.Product: AndroidVersions: An... | | |
CVE-2020-0252 | There is a possible memory corruption due to a use after free.Product: AndroidVersions: Android SoCA... | | |
CVE-2020-0253 | There is a possible memory corruption due to a use after free.Product: AndroidVersions: Android SoCA... | | |
CVE-2020-0254 | There is a possible out of bounds read due to an incorrect bounds check.Product: AndroidVersions: An... | | |
CVE-2020-0255 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2020-10751. Reason: This candidat... | R | |
CVE-2020-0256 | In LoadPartitionTable of gpt.cc, there is a possible out of bounds write due to a missing bounds che... | | |
CVE-2020-0257 | In SpecializeCommon of com_android_internal_os_Zygote.cpp, there is a permissions bypass due to an i... | | |
CVE-2020-0258 | In stopZygoteLocked of AppZygote.java, there is an insufficient cleanup. This could lead to local in... | | |
CVE-2020-0259 | In android_verity_ctr of dm-android-verity.c, there is a possible way to modify a dm-verity protecte... | | |
CVE-2020-0260 | There is a possible out of bounds read due to an incorrect bounds check.Product: AndroidVersions: An... | | |
CVE-2020-0261 | In C2 flame devices, there is a possible bypass of seccomp due to a missing configuration file. This... | | |
CVE-2020-0262 | In WiFi tethering, there is a possible attacker controlled intent due to an unsafe PendingIntent. Th... | | |
CVE-2020-0263 | In the Accessibility service, there is a possible permission bypass due to an unsafe PendingIntent. ... | | |
CVE-2020-0264 | In libstagefright, there is a possible out of bounds write due to an integer overflow. This could le... | | |
CVE-2020-0265 | In Telephony, there are possible leaks of sensitive data due to missing permission checks. This coul... | | |
CVE-2020-0266 | In factory reset protection, there is a possible FRP bypass due to a missing permission check. This ... | | |
CVE-2020-0267 | In WindowManager, there is a possible launch of an unexpected app due to a confused deputy. This cou... | | |
CVE-2020-0268 | In NFC, there is a possible use-after-free due to a race condition. This could lead to local escalat... | | |
CVE-2020-0269 | In Android Auto Settings, there is a possible permission bypass due to an unsafe PendingIntent. This... | | |
CVE-2020-0270 | In tremolo, there is a possible out of bounds read due to a missing bounds check. This could lead to... | | |
CVE-2020-0271 | In the Settings app, there is an insecure default value. This could lead to local escalation of priv... | | |
CVE-2020-0272 | In libhwbinder, there is a possible information disclosure due to uninitialized data. This could lea... | | |
CVE-2020-0273 | In hwservicemanager, there is a possible out of bounds write due to freeing a wild pointer. This cou... | | |
CVE-2020-0274 | In the OMX parser, there is a possible information disclosure due to a returned raw pointer. This co... | | |
CVE-2020-0275 | In MediaProvider, there is a possible way to access ContentResolver and MediaStore entries the app s... | | |
CVE-2020-0276 | In Telephony, there is a possible permission bypass due to a missing permission check. This could le... | | |
CVE-2020-0277 | In NetworkPolicyManagerService, there is a possible permissions bypass due to a missing permission c... | | |
CVE-2020-0278 | There is a possible out of bounds write due to an incorrect bounds check.Product: AndroidVersions: A... | | |
CVE-2020-0279 | In the AAC parser, there is a possible out of bounds read due to a missing bounds check. This could ... | | |
CVE-2020-0280 | In nci_proc_ee_management_rsp of nci_hrcv.cc, there is a possible out of bounds read due to a missin... | S | |
CVE-2020-0281 | In NFC, there is a possible out of bounds read due to a missing bounds check. This could lead to rem... | | |
CVE-2020-0282 | In NFC, there is a possible out of bounds read due to a missing bounds check. This could lead to rem... | | |
CVE-2020-0283 | There is a possible out of bounds write due to a missing bounds check.Product: AndroidVersions: Andr... | | |
CVE-2020-0284 | In Telephony, there is a possible permission bypass due to a missing permission check. This could le... | | |
CVE-2020-0285 | In Telephony, there is a possible permission bypass due to a missing permission check. This could le... | | |
CVE-2020-0286 | In Bluetooth AVRCP, there is a possible leak of audio metadata due to residual data. This could lead... | | |
CVE-2020-0287 | In libmkvextractor, there is a possible resource exhaustion due to a missing bounds check. This coul... | | |
CVE-2020-0288 | In PackageManager, there is a missing permission check. This could lead to local information disclos... | | |
CVE-2020-0289 | In PackageManager, there is a missing permission check. This could lead to local information disclos... | | |
CVE-2020-0290 | In PackageManager, there is a missing permission check. This could lead to local information disclos... | | |
CVE-2020-0291 | In Bluetooth, there is a possible out of bounds read due to a missing bounds check. This could lead ... | | |
CVE-2020-0292 | In Bluetooth, there is a possible out of bounds read due to a missing bounds check. This could lead ... | | |
CVE-2020-0293 | In Java network APIs, there is possible access to sensitive network state due to a missing permissio... | E | |
CVE-2020-0294 | In bindWallpaperComponentLocked of WallpaperManagerService.java, there is a possible permission bypa... | | |
CVE-2020-0295 | In Telecom, there is a possible permission bypass due to an unsafe PendingIntent. This could lead to... | | |
CVE-2020-0296 | In ADB server and USB server, there is a possible permission bypass due to an unsafe PendingIntent. ... | | |
CVE-2020-0297 | In devicepolicy service, there is a possible permission bypass due to an unsafe PendingIntent. This ... | | |
CVE-2020-0298 | In Bluetooth, there is a possible control over Bluetooth enabled state due to a missing permission c... | | |
CVE-2020-0299 | In Bluetooth, there is a possible spoofing of bluetooth device metadata due to a missing permission ... | | |
CVE-2020-0300 | In NFC, there is a possible out of bounds read due to uninitialized data. This could lead to remote ... | | |
CVE-2020-0301 | In libstagefright, there is a possible resource exhaustion due to improper input validation. This co... | | |
CVE-2020-0302 | In Settings, there is a possible permission bypass due to an unsafe PendingIntent. This could lead t... | | |
CVE-2020-0303 | In the Media extractor, there is a possible use after free due to improper locking. This could lead ... | | |
CVE-2020-0304 | In Settings, there is a possible permission bypass due to an unsafe PendingIntent. This could lead t... | | |
CVE-2020-0305 | In cdev_get of char_dev.c, there is a possible use-after-free due to a race condition. This could le... | S | |
CVE-2020-0306 | In LLVM, there is a possible ineffective stack cookie placement due to stack frame double reservatio... | | |
CVE-2020-0307 | In Settings, there is a possible permission bypass due to an unsafe PendingIntent. This could lead t... | | |
CVE-2020-0308 | In Window Manager, there is a possible permission bypass due to an unsafe PendingIntent. This could ... | | |
CVE-2020-0309 | In the Bluetooth server, there is a possible out of bounds write due to an integer overflow. This co... | | |
CVE-2020-0310 | In Settings, there is a possible permission bypass due to an unsafe PendingIntent. This could lead t... | | |
CVE-2020-0311 | In InputManagerService, there is a possible permission bypass due to an unsafe PendingIntent. This c... | | |
CVE-2020-0312 | In Battery Saver, there is a possible permission bypass due to an unsafe PendingIntent. This could l... | | |
CVE-2020-0313 | In NotificationManagerService, there is a possible permission bypass due to an unsafe PendingIntent.... | | |
CVE-2020-0314 | In AudioService, there are missing permission checks. This could lead to local information disclosur... | | |
CVE-2020-0315 | In Zen Mode, there is a possible permission bypass due to an unsafe PendingIntent. This could lead t... | | |
CVE-2020-0316 | In Telephony, there is a missing permission check. This could lead to local information disclosure o... | | |
CVE-2020-0317 | In UsageStatsManager, there is a possible access to protected data due to a missing permission check... | | |
CVE-2020-0318 | In the System UI, there is a possible system crash due to an uncaught exception. This could lead to ... | | |
CVE-2020-0319 | In NFC, there is a possible out of bounds write due to a missing bounds check. This could lead to lo... | | |
CVE-2020-0320 | In libstagefright, there is a possible resource exhaustion due to improper input validation. This co... | | |
CVE-2020-0321 | In the mp3 extractor, there is a possible out of bounds write due to uninitialized data. This could ... | | |
CVE-2020-0322 | In apexd, there is a possible out of bounds read due to a missing bounds check. This could lead to l... | | |
CVE-2020-0323 | In libavb, there is a possible out of bounds read due to a missing bounds check. This could lead to ... | | |
CVE-2020-0324 | In libsonivox, there is a possible out of bounds read due to a missing bounds check. This could lead... | | |
CVE-2020-0325 | In NFC, there is a missing bounds check. This could lead to local information disclosure with System... | | |
CVE-2020-0326 | In NFC, there is a possible out of bounds write due to uninitialized data. This could lead to local ... | | |
CVE-2020-0327 | In core networking, there is a missing permission check. This could lead to local information disclo... | | |
CVE-2020-0328 | In the camera, there is a possible out of bounds read due to an integer overflow. This could lead to... | | |
CVE-2020-0329 | In the OMX encoder, there is a possible out of bounds read due to invalid input validation. This cou... | | |
CVE-2020-0330 | In iorap, there is a possible memory corruption due to a use after free. This could lead to local es... | | |
CVE-2020-0331 | In Settings, there is a possible permissions bypass. This could lead to local information disclosure... | | |
CVE-2020-0332 | In libstagefright, there is a possible dead loop due to an uncaught exception. This could lead to re... | | |
CVE-2020-0333 | In UrlQuerySanitizer, there is a possible improper input validation. This could lead to remote code ... | | |
CVE-2020-0334 | In NFC, there is a possible out of bounds write due to a missing bounds check. This could lead to lo... | | |
CVE-2020-0335 | In NFC, there is a possible out of bounds write due to a missing bounds check. This could lead to lo... | | |
CVE-2020-0336 | In SurfaceFlinger, there is possible memory corruption due to type confusion. This could lead to loc... | | |
CVE-2020-0337 | In MediaProvider, there is a possible bypass of a permissions check due to a confused deputy. This c... | | |
CVE-2020-0338 | In checkKeyIntent of AccountManagerService.java, there is a possible permission bypass. This could l... | | |
CVE-2020-0339 | There is a possible out of bounds read due to a missing bounds check.Product: AndroidVersions: Andro... | | |
CVE-2020-0340 | In libcodec2_soft_mp3dec, there is a possible information disclosure due to uninitialized data. This... | | |
CVE-2020-0341 | In DisplayManager, there is a possible permission bypass due to a missing permission check. This cou... | | |
CVE-2020-0342 | There is a possible out of bounds write due to an incorrect bounds check.Product: AndroidVersions: A... | | |
CVE-2020-0343 | In NetworkStatsService, there is a possible access to protected data due to a missing permission che... | | |
CVE-2020-0344 | In MediaProvider, there is a possible permissions bypass due to SQL injection. This could lead to lo... | | |
CVE-2020-0345 | In DocumentsUI, there is a possible permission bypass due to a confused deputy. This could lead to l... | | |
CVE-2020-0346 | In Mediaserver, there is a possible out of bounds write due to an integer overflow. This could lead ... | | |
CVE-2020-0347 | In iptables, there is a possible out of bounds write due to an incorrect bounds check. This could le... | | |
CVE-2020-0348 | In NFC, there is a possible out of bounds read due to a missing bounds check. This could lead to rem... | | |
CVE-2020-0349 | In NFC, there is a possible out of bounds read due to a missing bounds check. This could lead to loc... | | |
CVE-2020-0350 | In NFC, there is a possible out of bounds write due to a missing bounds check. This could lead to lo... | | |
CVE-2020-0351 | In libstagefright, there is possible CPU exhaustion due to improper input validation. This could lea... | | |
CVE-2020-0352 | In MediaProvider, there is a possible permissions bypass due to SQL injection. This could lead to lo... | | |
CVE-2020-0353 | In libmp4extractor, there is a possible resource exhaustion due to a missing bounds check. This coul... | | |
CVE-2020-0354 | In Bluetooth, there is a possible out of bounds write due to a missing bounds check. This could lead... | | |
CVE-2020-0355 | In libFraunhoferAAC, there is a possible out of bounds read due to a missing bounds check. This coul... | | |
CVE-2020-0356 | In the Audio HAL, there is a possible out of bounds write due to an incorrect bounds check. This cou... | | |
CVE-2020-0357 | In SurfaceFlinger, there is a possible use-after-free due to improper locking. This could lead to lo... | | |
CVE-2020-0358 | In SurfaceFlinger, there is a possible use after free due to a race condition. This could lead to lo... | | |
CVE-2020-0359 | In GLESRenderEngine, there is a possible out of bounds read due to a buffer overflow. This could lea... | | |
CVE-2020-0360 | In Notification Access Confirmation, there is a possible permissions bypass due to uninformed consen... | | |
CVE-2020-0361 | In libDRCdec, there is a possible information disclosure due to uninitialized data. This could lead ... | | |
CVE-2020-0362 | In libstagefright, there is a possible resource exhaustion due to improper input validation. This co... | | |
CVE-2020-0363 | In libmedia, there is a possible resource exhaustion due to improper input validation. This could le... | | |
CVE-2020-0364 | In libDRCdec, there is a possible out of bounds read due to a missing bounds check. This could lead ... | | |
CVE-2020-0365 | In netd, there is a possible out of bounds read due to a missing bounds check. This could lead to re... | | |
CVE-2020-0366 | In PackageInstaller, there is a possible permissions bypass due to a tapjacking vulnerability. This ... | | |
CVE-2020-0367 | There is a possible out of bounds write due to a missing bounds check.Product: AndroidVersions: Andr... | | |
CVE-2020-0368 | In queryInternal of CallLogProvider.java, there is a possible permission bypass due to improper inpu... | S | |
CVE-2020-0369 | In libavb, there is a possible out of bounds write due to an integer overflow. This could lead to lo... | | |
CVE-2020-0370 | In libAACdec, there is a possible out of bounds read due to missing bounds check. This could lead to... | | |
CVE-2020-0371 | There is a possible out of bounds read due to a missing bounds check.Product: AndroidVersions: Andro... | | |
CVE-2020-0372 | In ActivityManager, there is a possible access to protected data due to a missing permission check. ... | | |
CVE-2020-0373 | In SoundTriggerHwService, there is a possible out of bounds read due to a race condition. This could... | | |
CVE-2020-0374 | In NFC, there is a possible permission bypass due to an unsafe PendingIntent. This could lead to loc... | | |
CVE-2020-0375 | In Telephony, there is a possible permission bypass due to a missing permission check. This could le... | | |
CVE-2020-0376 | There is a possible out of bounds read due to a missing bounds check.Product: AndroidVersions: Andro... | | |
CVE-2020-0377 | In gatt_process_read_by_type_rsp of gatt_cl.cc, there is a possible out of bounds read due to a miss... | | |
CVE-2020-0378 | In onWnmFrameReceived of PasspointManager.java, there is a missing permission check. This could lead... | | |
CVE-2020-0379 | In the Bluetooth service, there is a possible spoofing attack due to a logic error. This could lead ... | S | |
CVE-2020-0380 | In allocExcessBits of bitalloc.c, there is a possible out of bounds write due to an incorrect bounds... | S | |
CVE-2020-0381 | In Parse_wave of eas_mdls.c, there is a possible out of bounds write due to an integer overflow. Thi... | S | |
CVE-2020-0382 | In RunInternal of dumpstate.cpp, there is a possible user consent bypass due to an uncaught exceptio... | | |
CVE-2020-0383 | In Parse_ins of eas_mdls.c, there is a possible out of bounds write due to a missing bounds check. T... | S | |
CVE-2020-0384 | In Parse_art of eas_mdls.c, there is a possible out of bounds write due to an incorrect bounds check... | S | |
CVE-2020-0385 | In Parse_insh of eas_mdls.c, there is a possible out of bounds write due to an incorrect bounds chec... | S | |
CVE-2020-0386 | In onCreate of RequestPermissionActivity.java, there is a possible tapjacking vector due to an insec... | S | |
CVE-2020-0387 | In manifest files of the SmartSpace package, there is a possible tapjacking vector due to a missing ... | | |
CVE-2020-0388 | In createEmergencyLocationUserNotification of GnssVisibilityControl.java, there is a possible permis... | S | |
CVE-2020-0389 | In createSaveNotification of RecordingService.java, there is a possible permission bypass due to an ... | S | |
CVE-2020-0390 | In the app zygote SE Policy, there is a possible permissions bypass. This could lead to local inform... | S | |
CVE-2020-0391 | In applyPolicy of PackageManagerService.java, there is possible arbitrary command execution as Syste... | | |
CVE-2020-0392 | In getLayerDebugInfo of SurfaceFlinger.cpp, there is a possible code execution due to a double free.... | | |
CVE-2020-0393 | In decrypt and decrypt_1_2 of CryptoPlugin.cpp, there is a possible out of bounds read due to a miss... | | |
CVE-2020-0394 | In onCreate of BluetoothPairingDialog.java, there is a possible tapjacking vector due to an insecure... | | |
CVE-2020-0395 | In showNotification of EmergencyCallbackModeService.java, there is a possible permission bypass due ... | | |
CVE-2020-0396 | In various places in Telephony, there is a possible permission bypass due to an unsafe PendingIntent... | | |
CVE-2020-0397 | In getNotificationBuilder of CarrierServiceStateTracker.java, there is a possible permission bypass ... | | |
CVE-2020-0398 | In updateMwi of NotificationMgr.java, there is a possible permission bypass due to a PendingIntent e... | | |
CVE-2020-0399 | In showLimitedSimFunctionWarningNotification of NotificationMgr.java, there is a possible permission... | | |
CVE-2020-0400 | In showDataRoamingNotification of NotificationMgr.java, there is a possible permission bypass due to... | | |
CVE-2020-0401 | In setInstallerPackageName of PackageManagerService.java, there is a missing permission check. This ... | | |
CVE-2020-0402 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.... | R | |
CVE-2020-0403 | In the FPC TrustZone fingerprint App, there is a possible invalid command handler due to an exposed ... | | |
CVE-2020-0404 | In uvc_scan_chain_forward of uvc_driver.c, there is a possible linked list corruption due to an unus... | | |
CVE-2020-0405 | In NetworkStackNotifier, there is a possible permissions bypass due to an unsafe implicit PendingInt... | | |
CVE-2020-0406 | In libmpeg2dec, there is a possible out of bounds write due to a missing bounds check. This could le... | | |
CVE-2020-0407 | In various functions in fscrypt_ice.c and related files in some implementations of f2fs encryption t... | | |
CVE-2020-0408 | In remove of String16.cpp, there is a possible out of bounds write due to an integer overflow. This ... | | |
CVE-2020-0409 | In create of FileMap.cpp, there is a possible out of bounds write due to an integer overflow. This c... | S | |
CVE-2020-0410 | In setNotification of SapServer.java, there is a possible permission bypass due to a PendingIntent e... | S | |
CVE-2020-0411 | In ~AACExtractor() of AACExtractor.cpp, there is a possible out of bounds write due to uninitialized... | S | |
CVE-2020-0412 | In setProcessMemoryTrimLevel of ActivityManagerService.java, there is a missing permission check. Th... | S | |
CVE-2020-0413 | In gatt_process_read_by_type_rsp of gatt_cl.cc, there is a possible out of bounds read due to a miss... | S | |
CVE-2020-0414 | In AudioFlinger::RecordThread::threadLoop of audioflinger/Threads.cpp, there is a possible non-silen... | S | |
CVE-2020-0415 | In various locations in SystemUI, there is a possible permission bypass due to an unsafe PendingInte... | S | |
CVE-2020-0416 | In multiple settings screens, there are possible tapjacking attacks due to an insecure default value... | S | |
CVE-2020-0417 | In setNiNotification of GpsNetInitiatedHandler.java, there is a possible permissions bypass due to a... | S | |
CVE-2020-0418 | In getPermissionInfosForGroup of Utils.java, there is a logic error. This could lead to local escala... | S | |
CVE-2020-0419 | In generateInfo of PackageInstallerSession.java, there is a possible leak of cross-profile URI data ... | S | |
CVE-2020-0420 | In setUpdatableDriverPath of GpuService.cpp, there is a possible memory corruption due to a missing ... | S | |
CVE-2020-0421 | In appendFormatV of String8.cpp, there is a possible out of bounds write due to incorrect error hand... | S | |
CVE-2020-0422 | In constructImportFailureNotification of NotificationImportExportListener.java, there is a possible ... | S | |
CVE-2020-0423 | In binder_release_work of binder.c, there is a possible use-after-free due to improper locking. This... | | |
CVE-2020-0424 | In send_vc of res_send.cpp, there is a possible out of bounds read due to an incorrect bounds check.... | S | |
CVE-2020-0425 | There is a possible way to view notifications even when the "Lockdown" feature is on. This could lea... | | |
CVE-2020-0426 | In SyncManager, there is a possible permission bypass due to an unsafe PendingIntent. This could lea... | | |
CVE-2020-0427 | In create_pinctrl of core.c, there is a possible out of bounds read due to a use after free. This co... | S | |
CVE-2020-0428 | In CamX code, there is a possible use after free due to a race condition. This could lead to local e... | | |
CVE-2020-0429 | In l2tp_session_delete and related functions of l2tp_core.c, there is possible memory corruption due... | S | |
CVE-2020-0430 | In skb_headlen of /include/linux/skbuff.h, there is a possible out of bounds read due to memory corr... | | |
CVE-2020-0431 | In kbd_keycode of keyboard.c, there is a possible out of bounds write due to a missing bounds check.... | S | |
CVE-2020-0432 | In skb_to_mamac of networking.c, there is a possible out of bounds write due to an integer overflow.... | S | |
CVE-2020-0433 | In blk_mq_queue_tag_busy_iter of blk-mq-tag.c, there is a possible use after free due to improper lo... | S | |
CVE-2020-0434 | In Pixel's use of the Catpipe library, there is possible memory corruption due to a use after free. ... | | |
CVE-2020-0435 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2018-14615. Reason: This candidat... | R | |
CVE-2020-0436 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.... | R | |
CVE-2020-0437 | In CellBroadcastReceiver's intent handlers, there is a possible denial of service due to a missing p... | S | |
CVE-2020-0438 | In the AIBinder_Class constructor of ibinder.cpp, there is a possible arbitrary code execution due t... | | |
CVE-2020-0439 | In generatePackageInfo of PackageManagerService.java, there is a possible permissions bypass due to ... | S | |
CVE-2020-0440 | In createVirtualDisplay of DisplayManagerService.java, there is a possible way to create a trusted v... | S | |
CVE-2020-0441 | In Message and toBundle of Notification.java, there is a possible resource exhaustion due to imprope... | S | |
CVE-2020-0442 | In Message and toBundle of Notification.java, there is a possible UI slowdown or crash due to improp... | S | |
CVE-2020-0443 | In LocaleList of LocaleList.java, there is a possible forced reboot due to an uncaught exception. Th... | S | |
CVE-2020-0444 | In audit_free_lsm_field of auditfilter.c, there is a possible bad kfree due to a logic error in audi... | S | |
CVE-2020-0445 | There is a possible out of bounds write due to a missing bounds check.Product: AndroidVersions: Andr... | | |
CVE-2020-0446 | There is a possible out of bounds write due to a missing bounds check.Product: AndroidVersions: Andr... | | |
CVE-2020-0447 | There is a possible out of bounds write due to a missing bounds check.Product: AndroidVersions: Andr... | | |
CVE-2020-0448 | In getPhoneAccountsForPackage of TelecomServiceImpl.java, there is a possible way to access a tracki... | S | |
CVE-2020-0449 | In btm_sec_disconnected of btm_sec.cc, there is a possible memory corruption due to a use after free... | S | |
CVE-2020-0450 | In rw_i93_sm_format of rw_i93.cc, there is a possible out of bounds read due to uninitialized data. ... | S | |
CVE-2020-0451 | In sbrDecoder_AssignQmfChannels2SbrChannels of sbrdecoder.cpp, there is a possible out of bounds wri... | S | |
CVE-2020-0452 | In exif_entry_get_value of exif-entry.c, there is a possible out of bounds write due to an integer o... | S | |
CVE-2020-0453 | In updateNotification of BeamTransferManager.java, there is a possible permission bypass due to an u... | S | |
CVE-2020-0454 | In callCallbackForRequest of ConnectivityService.java, there is a possible permission bypass due to ... | E | |
CVE-2020-0455 | There is a possible out of bounds write due to a missing bounds check.Product: AndroidVersions: Andr... | | |
CVE-2020-0456 | There is a possible out of bounds write due to a missing bounds check.Product: AndroidVersions: Andr... | | |
CVE-2020-0457 | There is a possible out of bounds write due to a missing bounds check.Product: AndroidVersions: Andr... | | |
CVE-2020-0458 | In SPDIFEncoder::writeBurstBufferBytes and related methods of SPDIFEncoder.cpp, there is a possible ... | S | |
CVE-2020-0459 | In sendConfiguredNetworkChangedBroadcast of WifiConfigManager.java, there is a possible leak of sens... | S | |
CVE-2020-0460 | In createNameCredentialDialog of CertInstaller.java, there exists the possibility of improperly inst... | S | |
CVE-2020-0463 | In sdp_server_handle_client_req of sdp_server.cc, there is a possible out of bounds read due to a mi... | S | |
CVE-2020-0464 | In resolv_cache_lookup of res_cache.cpp, there is a possible side channel information disclosure. Th... | S | |
CVE-2020-0465 | In various methods of hid-multitouch.c, there is a possible out of bounds write due to a missing bou... | S | |
CVE-2020-0466 | In do_epoll_ctl and ep_loop_check_proc of eventpoll.c, there is a possible use after free due to a l... | S | |
CVE-2020-0467 | In onUserStopped of Vpn.java, there is a possible resetting of user preferences due to a logic issue... | S | |
CVE-2020-0468 | In listen() and related functions of TelephonyRegistry.java, there is a possible permissions bypass ... | S | |
CVE-2020-0469 | In addEscrowToken of LockSettingsService.java, there is a possible loss of the synthetic password du... | S | |
CVE-2020-0470 | In extend_frame_highbd of restoration.c, there is a possible out of bounds write due to a heap buffe... | S | |
CVE-2020-0471 | In reassemble_and_dispatch of packet_fragmenter.cc, there is a possible way to inject packets into a... | S | |
CVE-2020-0473 | In updateIncomingFileConfirmNotification of BluetoothOppNotification.java, there is a possible permi... | S | |
CVE-2020-0474 | In HalCamera::requestNewFrame of HalCamera.cpp, there is a possible use-after-free due to a race con... | S | |
CVE-2020-0475 | In createInputConsumer of WindowManagerService.java, there is a possible way to block and intercept ... | | |
CVE-2020-0476 | In onNotificationRemoved of Assistant.java, there is a possible leak of sensitive information to log... | S | |
CVE-2020-0477 | In sendLinkConfigurationChangedBroadcast of ClientModeImpl.java, there is a possible information dis... | S | |
CVE-2020-0478 | In extend_frame_lowbd of restoration.c, there is a possible out of bounds write due to a missing bou... | S | |
CVE-2020-0479 | In callUnchecked of DocumentsProvider.java, there is a possible permissions bypass. This could lead ... | S | |
CVE-2020-0480 | In callUnchecked of DocumentsProvider.java, there is a possible permissions bypass due to a missing ... | S | |
CVE-2020-0481 | In AndroidManifest.xml, there is a possible permissions bypass. This could lead to local escalation ... | S | |
CVE-2020-0482 | In command of IncidentService.cpp, there is a possible out of bounds read due to an incorrect bounds... | S | |
CVE-2020-0483 | In DrmManagerService::~DrmManagerService() of DrmManagerService.cpp, there is a possible memory corr... | S | |
CVE-2020-0484 | In destroyResources of ComposerClient.h, there is possible memory corruption due to a use after free... | S | |
CVE-2020-0485 | In areFunctionsSupported of UsbBackend.java, there is a possible access to tethering from a guest ac... | S | |
CVE-2020-0486 | In openAssetFileListener of ContactsProvider2.java, there is a possible permission bypass due to an ... | S | |
CVE-2020-0487 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was with... | R | |
CVE-2020-0488 | In ihevc_inter_pred_chroma_copy_ssse3 of ihevc_inter_pred_filters_ssse3_intr.c, there is a possible ... | S | |
CVE-2020-0489 | In Parse_data of eas_mdls.c, there is a possible out of bounds write due to a missing bounds check. ... | S | |
CVE-2020-0490 | In floor1_info_unpack of floor1.c, there is a possible out of bounds read due to a missing bounds ch... | S | |
CVE-2020-0491 | In readBlock of MatroskaExtractor.cpp, there is a possible denial of service due to resource exhaust... | | |
CVE-2020-0492 | In BitstreamFillCache of bitstream.cpp, there is a possible out of bounds read due to a heap buffer ... | | |
CVE-2020-0493 | In CPDF_SampledFunc::v_Call of cpdf_sampledfunc.cpp, there is a possible out of bounds read due to i... | | |
CVE-2020-0494 | In ih264d_parse_ave of ih264d_sei.c, there is a possible out of bounds read due to a heap buffer ove... | | |
CVE-2020-0495 | In decode_Huffman of JBig2_SddProc.cpp, there is a possible out of bounds write due to an integer ov... | | |
CVE-2020-0496 | In CPDF_RenderStatus::LoadSMask of cpdf_renderstatus.cpp, there is a possible memory corruption due ... | | |
CVE-2020-0497 | In canUseBiometric of BiometricServiceBase, there is a missing permission check. This could lead to ... | | |
CVE-2020-0498 | In decode_packed_entry_number of codebook.c, there is a possible out of bounds read due to a heap bu... | | |
CVE-2020-0499 | In FLAC__bitreader_read_rice_signed_block of bitreader.c, there is a possible out of bounds read due... | | |
CVE-2020-0500 | In startInputUncheckedLocked of InputMethodManager.java, there is a possible permission bypass due t... | | |
CVE-2020-0501 | Buffer overflow in Intel(R) Graphics Drivers before version 26.20.100.6912 may allow an authenticate... | | |
CVE-2020-0502 | Improper access control in Intel(R) Graphics Drivers before version 26.20.100.6912 may allow an auth... | | |
CVE-2020-0503 | Improper access control in Intel(R) Graphics Drivers before version 26.20.100.7212 may allow an auth... | | |
CVE-2020-0504 | Buffer overflow in Intel(R) Graphics Drivers before versions 15.40.44.5107, 15.45.30.5103, and 26.20... | | |
CVE-2020-0505 | Improper conditions check in Intel(R) Graphics Drivers before versions 15.33.49.5100, 15.36.38.5117,... | | |
CVE-2020-0506 | Improper initialization in Intel(R) Graphics Drivers before versions 15.40.44.5107, 15.45.29.5077, a... | | |
CVE-2020-0507 | Unquoted service path in Intel(R) Graphics Drivers before versions 15.33.49.5100, 15.36.38.5117, 15.... | | |
CVE-2020-0508 | Incorrect default permissions in the installer for Intel(R) Graphics Drivers before versions 15.33.4... | | |
CVE-2020-0509 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a... | R | |
CVE-2020-0510 | Out of bounds read in some Intel(R) Graphics Drivers before versions 15.45.31.5127 and 15.40.45.5126... | S | |
CVE-2020-0511 | Uncaught exception in system driver for Intel(R) Graphics Drivers before version 15.40.44.5107 may a... | | |
CVE-2020-0512 | Uncaught exception in the system driver for some Intel(R) Graphics Drivers before version 15.33.50.5... | S | |
CVE-2020-0513 | Out of bounds write for some Intel(R) Graphics Drivers before version 15.33.50.5129 may allow an aut... | S | |
CVE-2020-0514 | Improper default permissions in the installer for Intel(R) Graphics Drivers before versions 26.20.10... | | |
CVE-2020-0515 | Uncontrolled search path element in the installer for Intel(R) Graphics Drivers before versions 26.2... | | |
CVE-2020-0516 | Improper access control in Intel(R) Graphics Drivers before version 26.20.100.7463 may allow an auth... | | |
CVE-2020-0517 | Out-of-bounds write in Intel(R) Graphics Drivers before version 15.36.38.5117 may allow an authentic... | | |
CVE-2020-0518 | Improper access control in the Intel(R) HD Graphics Control Panel before version 15.40.46.5144 and 1... | | |
CVE-2020-0519 | Improper access control for Intel(R) Graphics Drivers before versions 15.33.49.5100 and 15.36.38.511... | | |
CVE-2020-0520 | Path traversal in igdkmd64.sys for Intel(R) Graphics Drivers before versions 15.45.30.5103, 15.40.44... | | |
CVE-2020-0521 | Insufficient control flow management in some Intel(R) Graphics Drivers before version 15.45.32.5145 ... | | |
CVE-2020-0522 | Improper initialization in the firmware for the Intel(R) Ethernet I210 Controller series of network ... | | |
CVE-2020-0523 | Improper access control in the firmware for the Intel(R) Ethernet I210 Controller series of network ... | S | |
CVE-2020-0524 | Improper default permissions in the firmware for the Intel(R) Ethernet I210 Controller series of net... | S | |
CVE-2020-0525 | Improper access control in firmware for the Intel(R) Ethernet I210 Controller series of network adap... | S | |
CVE-2020-0526 | Improper input validation in firmware for Intel(R) NUC may allow a privileged user to potentially en... | | |
CVE-2020-0527 | Insufficient control flow management in firmware for some Intel(R) Data Center SSDs may allow a priv... | | |
CVE-2020-0528 | Improper buffer restrictions in BIOS firmware for 7th, 8th, 9th and 10th Generation Intel(R) Core(TM... | | |
CVE-2020-0529 | Improper initialization in BIOS firmware for 8th, 9th and 10th Generation Intel(R) Core(TM) Processo... | | |
CVE-2020-0530 | Improper buffer restrictions in firmware for Intel(R) NUC may allow an authenticated user to potenti... | | |
CVE-2020-0531 | Improper input validation in Intel(R) AMT versions before 11.8.77, 11.12.77, 11.22.77 and 12.0.64 ma... | | |
CVE-2020-0532 | Improper input validation in subsystem for Intel(R) AMT versions before 11.8.77, 11.12.77, 11.22.77 ... | | |
CVE-2020-0533 | Reversible one-way hash in Intel(R) CSME versions before 11.8.76, 11.12.77 and 11.22.77 may allow a ... | | |
CVE-2020-0534 | Improper input validation in the DAL subsystem for Intel(R) CSME versions before 12.0.64, 13.0.32, 1... | | |
CVE-2020-0535 | Improper input validation in Intel(R) AMT versions before 11.8.76, 11.12.77, 11.22.77 and 12.0.64 ma... | | |
CVE-2020-0536 | Improper input validation in the DAL subsystem for Intel(R) CSME versions before 11.8.77, 11.12.77, ... | | |
CVE-2020-0537 | Improper input validation in subsystem for Intel(R) AMT versions before 11.8.77, 11.12.77, 11.22.77 ... | | |
CVE-2020-0538 | Improper input validation in subsystem for Intel(R) AMT versions before 11.8.77, 11.12.77, 11.22.77 ... | | |
CVE-2020-0539 | Path traversal in subsystem for Intel(R) DAL software for Intel(R) CSME versions before 11.8.77, 11.... | | |
CVE-2020-0540 | Insufficiently protected credentials in Intel(R) AMT versions before 11.8.77, 11.12.77, 11.22.77 and... | | |
CVE-2020-0541 | Out-of-bounds write in subsystem for Intel(R) CSME versions before 12.0.64, 13.0.32, 14.0.33 and 14.... | | |
CVE-2020-0542 | Improper buffer restrictions in subsystem for Intel(R) CSME versions before 12.0.64, 13.0.32, 14.0.3... | | |
CVE-2020-0543 | Incomplete cleanup from specific special register read operations in some Intel(R) Processors may al... | | |
CVE-2020-0544 | Insufficient control flow management in the kernel mode driver for some Intel(R) Graphics Drivers be... | | |
CVE-2020-0545 | Integer overflow in subsystem for Intel(R) CSME versions before 11.8.77, 11.12.77, 11.22.77 and Inte... | | |
CVE-2020-0546 | Unquoted service path in Intel(R) Optane(TM) DC Persistent Memory Module Management Software before ... | | |
CVE-2020-0547 | Incorrect default permissions in the installer for Intel(R) Data Migration Software versions 3.3 and... | | |
CVE-2020-0548 | Cleanup errors in some Intel(R) Processors may allow an authenticated user to potentially enable inf... | | |
CVE-2020-0549 | Cleanup errors in some data cache evictions for some Intel(R) Processors may allow an authenticated ... | | |
CVE-2020-0550 | Improper data forwarding in some data cache for some Intel(R) Processors may allow an authenticated ... | | |
CVE-2020-0551 | Load value injection in some Intel(R) Processors utilizing speculative execution may allow an authen... | | |
CVE-2020-0552 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a... | R | |
CVE-2020-0553 | Out-of-bounds read in kernel mode driver for some Intel(R) Wireless Bluetooth(R) products on Windows... | S | |
CVE-2020-0554 | Race condition in software installer for some Intel(R) Wireless Bluetooth(R) products on Windows* 7,... | S | |
CVE-2020-0555 | Improper input validation for some Intel(R) Wireless Bluetooth(R) products may allow an authenticate... | S | |
CVE-2020-0556 | Improper access control in subsystem for BlueZ before version 5.54 may allow an unauthenticated user... | S | |
CVE-2020-0557 | Insecure inherited permissions in Intel(R) PROSet/Wireless WiFi products before version 21.70 on Win... | | |
CVE-2020-0558 | Improper buffer restrictions in kernel mode driver for Intel(R) PROSet/Wireless WiFi products before... | | |
CVE-2020-0559 | Insecure inherited permissions in some Intel(R) PROSet/Wireless WiFi products on Windows* 7 and 8.1 ... | S | |
CVE-2020-0560 | Improper permissions in the installer for the Intel(R) Renesas Electronics(R) USB 3.0 Driver, all ve... | | |
CVE-2020-0561 | Improper initialization in the Intel(R) SGX SDK before v2.6.100.1 may allow an authenticated user to... | | |
CVE-2020-0562 | Improper permissions in the installer for Intel(R) RWC2, all versions, may allow an authenticated us... | S | |
CVE-2020-0563 | Improper permissions in the installer for Intel(R) MPSS before version 3.8.6 may allow an authentica... | | |
CVE-2020-0564 | Improper permissions in the installer for Intel(R) RWC3 for Windows before version 7.010.009.000 may... | S | |
CVE-2020-0565 | Uncontrolled search path in Intel(R) Graphics Drivers before version 26.20.100.7158 may allow an aut... | | |
CVE-2020-0566 | Improper Access Control in subsystem for Intel(R) TXE versions before 3.175 and 4.0.25 may allow an ... | | |
CVE-2020-0567 | Improper input validation in Intel(R) Graphics Drivers before version 26.20.100.7212 may allow an au... | | |
CVE-2020-0568 | Race condition in the Intel(R) Driver and Support Assistant before version 20.1.5 may allow an authe... | S | |
CVE-2020-0569 | Out of bounds write in Intel(R) PROSet/Wireless WiFi products on Windows 10 may allow an authenticat... | S | |
CVE-2020-0570 | Uncontrolled search path in the QT Library before 5.14.0, 5.12.7 and 5.9.10 may allow an authenticat... | E S | |
CVE-2020-0571 | Improper conditions check in BIOS firmware for 8th Generation Intel(R) Core(TM) Processors and Intel... | | |
CVE-2020-0572 | Improper input validation in the firmware for Intel(R) Server Board S2600ST and S2600WF families may... | S | |
CVE-2020-0573 | Out of bounds read in the Intel CSI2 Host Controller driver may allow an authenticated user to poten... | | |
CVE-2020-0574 | Improper configuration in block design for Intel(R) MAX(R) 10 FPGA all versions may allow an authent... | | |
CVE-2020-0575 | Improper buffer restrictions in the Intel(R) Unite Client for Windows* before version 4.2.13064 may ... | S | |
CVE-2020-0576 | Buffer overflow in Intel(R) Modular Server MFS2600KISPP Compute Module may allow an unauthenticated ... | | |
CVE-2020-0577 | Insufficient control flow for Intel(R) Modular Server MFS2600KISPP Compute Module may allow an unaut... | | |
CVE-2020-0578 | Improper conditions check for Intel(R) Modular Server MFS2600KISPP Compute Module may allow an unaut... | | |
CVE-2020-0579 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a... | R | |
CVE-2020-0580 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a... | R | |
CVE-2020-0581 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a... | R | |
CVE-2020-0582 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a... | R | |
CVE-2020-0583 | Improper access control in the subsystem for Intel(R) Smart Sound Technology may allow an authentica... | | |
CVE-2020-0584 | Buffer overflow in firmware for Intel(R) SSD DC P4800X and P4801X Series, Intel(R) Optane(TM) SSD 90... | S | |
CVE-2020-0585 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a... | R | |
CVE-2020-0586 | Improper initialization in subsystem for Intel(R) SPS versions before SPS_E3_04.01.04.109.0 and SPS_... | | |
CVE-2020-0587 | Improper conditions check in BIOS firmware for some Intel(R) Processors may allow a privileged user ... | | |
CVE-2020-0588 | Improper conditions check in BIOS firmware for some Intel(R) Processors may allow a privileged user ... | | |
CVE-2020-0589 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a... | R | |
CVE-2020-0590 | Improper input validation in BIOS firmware for some Intel(R) Processors may allow an authenticated u... | S | |
CVE-2020-0591 | Improper buffer restrictions in BIOS firmware for some Intel(R) Processors may allow a privileged us... | | |
CVE-2020-0592 | Out of bounds write in BIOS firmware for some Intel(R) Processors may allow an authenticated user to... | | |
CVE-2020-0593 | Improper buffer restrictions in BIOS firmware for some Intel(R) Processors may allow a privileged us... | | |
CVE-2020-0594 | Out-of-bounds read in IPv6 subsystem in Intel(R) AMT and Intel(R) ISM versions before 11.8.77, 11.12... | | |
CVE-2020-0595 | Use after free in IPv6 subsystem in Intel(R) AMT and Intel(R) ISM versions before 11.8.77, 11.12.77,... | | |
CVE-2020-0596 | Improper input validation in DHCPv6 subsystem in Intel(R) AMT and Intel(R) ISM versions before 11.8.... | | |
CVE-2020-0597 | Out-of-bounds read in IPv6 subsystem in Intel(R) AMT and Intel(R) ISM versions before 14.0.33 may al... | | |
CVE-2020-0598 | Uncontrolled search path in the installer for the Intel(R) Binary Configuration Tool for Windows, al... | | |
CVE-2020-0599 | Improper access control in the PMC for some Intel(R) Processors may allow a privileged user to poten... | | |
CVE-2020-0600 | Improper buffer restrictions in firmware for some Intel(R) NUC may allow an authenticated user to po... | | |
CVE-2020-0601 | A spoofing vulnerability exists in the way Windows CryptoAPI (Crypt32.dll) validates Elliptic Curve ... | KEV S | |
CVE-2020-0602 | A denial of service vulnerability exists when ASP.NET Core improperly handles web requests, aka 'ASP... | S | |
CVE-2020-0603 | A remote code execution vulnerability exists in ASP.NET Core software when the software fails to han... | S | |
CVE-2020-0604 | Visual Studio Code Remote Code Execution Vulnerability | S | |
CVE-2020-0605 | A remote code execution vulnerability exists in .NET software when the software fails to check the s... | S | |
CVE-2020-0606 | A remote code execution vulnerability exists in .NET software when the software fails to check the s... | S | |
CVE-2020-0607 | An information disclosure vulnerability exists in the way that Microsoft Graphics Components handle ... | S | |
CVE-2020-0608 | An information disclosure vulnerability exists when the win32k component improperly provides kernel ... | S | |
CVE-2020-0609 | A remote code execution vulnerability exists in Windows Remote Desktop Gateway (RD Gateway) when an ... | S | |
CVE-2020-0610 | A remote code execution vulnerability exists in Windows Remote Desktop Gateway (RD Gateway) when an ... | S | |
CVE-2020-0611 | A remote code execution vulnerability exists in the Windows Remote Desktop Client when a user connec... | S | |
CVE-2020-0612 | A denial of service vulnerability exists in Windows Remote Desktop Gateway (RD Gateway) when an atta... | S | |
CVE-2020-0613 | An elevation of privilege vulnerability exists in the way that the Windows Search Indexer handles ob... | S | |
CVE-2020-0614 | An elevation of privilege vulnerability exists in the way that the Windows Search Indexer handles ob... | S | |
CVE-2020-0615 | An information disclosure vulnerability exists in the Windows Common Log File System (CLFS) driver w... | S | |
CVE-2020-0616 | A denial of service vulnerability exists when Windows improperly handles hard links, aka 'Microsoft ... | S | |
CVE-2020-0617 | A denial of service vulnerability exists when Microsoft Hyper-V Virtual PCI on a host server fails t... | S | |
CVE-2020-0618 | A remote code execution vulnerability exists in Microsoft SQL Server Reporting Services when it inco... | KEV E S | |
CVE-2020-0620 | An elevation of privilege vulnerability exists when Microsoft Cryptographic Services improperly hand... | S | |
CVE-2020-0621 | A security feature bypass vulnerability exists in Windows 10 when third party filters are called dur... | S | |
CVE-2020-0622 | An information disclosure vulnerability exists when the Microsoft Windows Graphics Component imprope... | S | |
CVE-2020-0623 | An elevation of privilege vulnerability exists in the way that the Windows Search Indexer handles ob... | S | |
CVE-2020-0624 | An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properl... | S | |
CVE-2020-0625 | An elevation of privilege vulnerability exists in the way that the Windows Search Indexer handles ob... | S | |
CVE-2020-0626 | An elevation of privilege vulnerability exists in the way that the Windows Search Indexer handles ob... | S | |
CVE-2020-0627 | An elevation of privilege vulnerability exists in the way that the Windows Search Indexer handles ob... | S | |
CVE-2020-0628 | An elevation of privilege vulnerability exists in the way that the Windows Search Indexer handles ob... | S | |
CVE-2020-0629 | An elevation of privilege vulnerability exists in the way that the Windows Search Indexer handles ob... | S | |
CVE-2020-0630 | An elevation of privilege vulnerability exists in the way that the Windows Search Indexer handles ob... | S | |
CVE-2020-0631 | An elevation of privilege vulnerability exists in the way that the Windows Search Indexer handles ob... | S | |
CVE-2020-0632 | An elevation of privilege vulnerability exists in the way that the Windows Search Indexer handles ob... | S | |
CVE-2020-0633 | An elevation of privilege vulnerability exists in the way that the Windows Search Indexer handles ob... | S | |
CVE-2020-0634 | An elevation of privilege vulnerability exists when the Windows Common Log File System (CLFS) driver... | S | |
CVE-2020-0635 | An elevation of privilege vulnerability exists in Microsoft Windows when Windows fails to properly h... | S | |
CVE-2020-0636 | An elevation of privilege vulnerability exists in the way that the Windows Subsystem for Linux handl... | S | |
CVE-2020-0637 | An information disclosure vulnerability exists when Remote Desktop Web Access improperly handles cre... | S | |
CVE-2020-0638 | An elevation of privilege vulnerability exists in the way the Update Notification Manager handles fi... | KEV S | |
CVE-2020-0639 | An information disclosure vulnerability exists in the Windows Common Log File System (CLFS) driver w... | S | |
CVE-2020-0640 | A remote code execution vulnerability exists when Internet Explorer improperly accesses objects in m... | S | |
CVE-2020-0641 | An elevation of privilege vulnerability exists in Windows Media Service that allows file creation in... | S | |
CVE-2020-0642 | An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properl... | E S | |
CVE-2020-0643 | An information disclosure vulnerability exists in the way that the Windows Graphics Device Interface... | S | |
CVE-2020-0644 | An elevation of privilege vulnerability exists when Microsoft Windows implements predictable memory ... | S | |
CVE-2020-0645 | A tampering vulnerability exists when Microsoft IIS Server improperly handles malformed request head... | S | |
CVE-2020-0646 | A remote code execution vulnerability exists when the Microsoft .NET Framework fails to validate inp... | KEV E S | |
CVE-2020-0647 | A spoofing vulnerability exists when Office Online does not validate origin in cross-origin communic... | S | |
CVE-2020-0648 | Windows RSoP Service Application Elevation of Privilege Vulnerability | S | |
CVE-2020-0650 | A remote code execution vulnerability exists in Microsoft Excel software when the software fails to ... | S | |
CVE-2020-0651 | A remote code execution vulnerability exists in Microsoft Excel software when the software fails to ... | S | |
CVE-2020-0652 | A remote code execution vulnerability exists in Microsoft Office software when the software fails to... | S | |
CVE-2020-0653 | A remote code execution vulnerability exists in Microsoft Excel software when the software fails to ... | S | |
CVE-2020-0654 | A security feature bypass vulnerability exists in Microsoft OneDrive App for Android.This could allo... | S | |
CVE-2020-0655 | A remote code execution vulnerability exists in Remote Desktop Services – formerly known as Termin... | S | |
CVE-2020-0656 | A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) does not prope... | S | |
CVE-2020-0657 | An elevation of privilege vulnerability exists when the Windows Common Log File System (CLFS) driver... | S | |
CVE-2020-0658 | An information disclosure vulnerability exists in the Windows Common Log File System (CLFS) driver w... | S | |
CVE-2020-0659 | An elevation of privilege vulnerability exists when the Windows Data Sharing Service improperly hand... | S | |
CVE-2020-0660 | A denial of service vulnerability exists in Remote Desktop Protocol (RDP) when an attacker connects ... | S | |
CVE-2020-0661 | A denial of service vulnerability exists when Microsoft Hyper-V on a host server fails to properly v... | S | |
CVE-2020-0662 | A remote code execution vulnerability exists in the way that Windows handles objects in memory, aka ... | S | |
CVE-2020-0663 | An elevation of privilege vulnerability exists when Microsoft Edge does not properly enforce cross-d... | S | |
CVE-2020-0664 | Active Directory Information Disclosure Vulnerability | S | |
CVE-2020-0665 | An elevation of privilege vulnerability exists in Active Directory Forest trusts due to a default se... | S | |
CVE-2020-0666 | An elevation of privilege vulnerability exists in the way that the Windows Search Indexer handles ob... | S | |
CVE-2020-0667 | An elevation of privilege vulnerability exists in the way that the Windows Search Indexer handles ob... | S | |
CVE-2020-0668 | An elevation of privilege vulnerability exists in the way that the Windows Kernel handles objects in... | E S | |
CVE-2020-0669 | An elevation of privilege vulnerability exists in the way that the Windows Kernel handles objects in... | S | |
CVE-2020-0670 | An elevation of privilege vulnerability exists when the Windows kernel fails to properly handle obje... | S | |
CVE-2020-0671 | An elevation of privilege vulnerability exists when the Windows kernel fails to properly handle obje... | S | |
CVE-2020-0672 | An elevation of privilege vulnerability exists when the Windows kernel fails to properly handle obje... | S | |
CVE-2020-0673 | A remote code execution vulnerability exists in the way that the scripting engine handles objects in... | S | |
CVE-2020-0674 | A remote code execution vulnerability exists in the way that the scripting engine handles objects in... | KEV E S | |
CVE-2020-0675 | An information disclosure vulnerability exists in the Cryptography Next Generation (CNG) service whe... | S | |
CVE-2020-0676 | An information disclosure vulnerability exists in the Cryptography Next Generation (CNG) service whe... | S | |
CVE-2020-0677 | An information disclosure vulnerability exists in the Cryptography Next Generation (CNG) service whe... | S | |
CVE-2020-0678 | An elevation of privilege vulnerability exists when Windows Error Reporting manager improperly handl... | S | |
CVE-2020-0679 | An elevation of privilege vulnerability exists in the way that the Windows Function Discovery Servic... | S | |
CVE-2020-0680 | An elevation of privilege vulnerability exists in the way that the Windows Function Discovery Servic... | S | |
CVE-2020-0681 | A remote code execution vulnerability exists in the Windows Remote Desktop Client when a user connec... | S | |
CVE-2020-0682 | An elevation of privilege vulnerability exists in the way that the Windows Function Discovery Servic... | S | |
CVE-2020-0683 | An elevation of privilege vulnerability exists in the Windows Installer when MSI packages process sy... | KEV S | |
CVE-2020-0684 | A remote code execution vulnerability exists in Microsoft Windows that could allow remote code execu... | S | |
CVE-2020-0685 | An elevation of privilege vulnerability exists when Windows improperly handles COM object creation, ... | S | |
CVE-2020-0686 | An elevation of privilege vulnerability exists in the Windows Installer when MSI packages process sy... | S | |
CVE-2020-0687 | A remote code execution vulnerability exists when the Windows font library improperly handles specia... | S | |
CVE-2020-0688 | A remote code execution vulnerability exists in Microsoft Exchange software when the software fails ... | KEV E S | |
CVE-2020-0689 | A security feature bypass vulnerability exists in secure boot, aka 'Microsoft Secure Boot Security F... | S | |
CVE-2020-0690 | An elevation of privilege vulnerability exists when DirectX improperly handles objects in memory, ak... | S | |
CVE-2020-0691 | An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails ... | S | |
CVE-2020-0692 | An elevation of privilege vulnerability exists in Microsoft Exchange Server, aka 'Microsoft Exchange... | S | |
CVE-2020-0693 | A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly... | S | |
CVE-2020-0694 | A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly... | S | |
CVE-2020-0695 | A spoofing vulnerability exists when Office Online Server does not validate origin in cross-origin c... | S | |
CVE-2020-0696 | A security feature bypass vulnerability exists in Microsoft Outlook software when it improperly hand... | S | |
CVE-2020-0697 | An elevation of privilege vulnerability exists in Microsoft Office OLicenseHeartbeat task, where an ... | S | |
CVE-2020-0698 | An information disclosure vulnerability exists when the Telephony Service improperly discloses the c... | S | |
CVE-2020-0699 | An information disclosure vulnerability exists when the win32k component improperly provides kernel ... | S | |
CVE-2020-0700 | A Cross-site Scripting (XSS) vulnerability exists when Azure DevOps Server does not properly sanitiz... | S | |
CVE-2020-0701 | An elevation of privilege vulnerability exists in the way that the Windows Client License Service (C... | S | |
CVE-2020-0702 | A security feature bypass vulnerability exists in Surface Hub when prompting for credentials, aka 'S... | S | |
CVE-2020-0703 | An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles fi... | S | |
CVE-2020-0704 | An elevation of privilege vulnerability exists when the Windows Wireless Network Manager improperly ... | S | |
CVE-2020-0705 | An information disclosure vulnerability exists when the Windows Network Driver Interface Specificati... | S | |
CVE-2020-0706 | An information disclosure vulnerability exists in the way that affected Microsoft browsers handle cr... | S | |
CVE-2020-0707 | An elevation of privilege vulnerability exists when the Windows IME improperly handles memory.To exp... | S | |
CVE-2020-0708 | A remote code execution vulnerability exists when the Windows Imaging Library improperly handles mem... | S | |
CVE-2020-0709 | An elevation of privilege vulnerability exists when DirectX improperly handles objects in memory, ak... | S | |
CVE-2020-0710 | A remote code execution vulnerability exists in the way that the ChakraCore scripting engine handles... | S | |
CVE-2020-0711 | A remote code execution vulnerability exists in the way that the ChakraCore scripting engine handles... | S | |
CVE-2020-0712 | A remote code execution vulnerability exists in the way that the ChakraCore scripting engine handles... | S | |
CVE-2020-0713 | A remote code execution vulnerability exists in the way that the ChakraCore scripting engine handles... | S | |
CVE-2020-0714 | An information disclosure vulnerability exists when DirectX improperly handles objects in memory, ak... | S | |
CVE-2020-0715 | An elevation of privilege vulnerability exists when the Windows Graphics Component improperly handle... | S | |
CVE-2020-0716 | An information disclosure vulnerability exists when the win32k component improperly provides kernel ... | S | |
CVE-2020-0717 | An information disclosure vulnerability exists when the win32k component improperly provides kernel ... | S | |
CVE-2020-0718 | Active Directory Remote Code Execution Vulnerability | S | |
CVE-2020-0719 | An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properl... | S | |
CVE-2020-0720 | An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properl... | S | |
CVE-2020-0721 | An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properl... | S | |
CVE-2020-0722 | An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properl... | S | |
CVE-2020-0723 | An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properl... | S | |
CVE-2020-0724 | An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properl... | S | |
CVE-2020-0725 | An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properl... | S | |
CVE-2020-0726 | An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properl... | S | |
CVE-2020-0727 | An elevation of privilege vulnerability exists when the Connected User Experiences and Telemetry Ser... | S | |
CVE-2020-0728 | An information vulnerability exists when Windows Modules Installer Service improperly discloses file... | S | |
CVE-2020-0729 | A remote code execution vulnerability exists in Microsoft Windows that could allow remote code execu... | S | |
CVE-2020-0730 | An elevation of privilege vulnerability exists when the Windows User Profile Service (ProfSvc) impro... | S | |
CVE-2020-0731 | An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properl... | S | |
CVE-2020-0732 | An elevation of privilege vulnerability exists when DirectX improperly handles objects in memory, ak... | S | |
CVE-2020-0733 | An elevation of privilege vulnerability exists when the Windows Malicious Software Removal Tool (MSR... | S | |
CVE-2020-0734 | A remote code execution vulnerability exists in the Windows Remote Desktop Client when a user connec... | S | |
CVE-2020-0735 | An elevation of privilege vulnerability exists in the way that the Windows Search Indexer handles ob... | S | |
CVE-2020-0736 | An information disclosure vulnerability exists when the Windows kernel improperly handles objects in... | S | |
CVE-2020-0737 | An elevation of privilege vulnerability exists in the way that the tapisrv.dll handles objects in me... | S | |
CVE-2020-0738 | A memory corruption vulnerability exists when Windows Media Foundation improperly handles objects in... | S | |
CVE-2020-0739 | An elevation of privilege vulnerability exists in the way that the dssvc.dll handles file creation a... | S | |
CVE-2020-0740 | An elevation of privilege vulnerability exists in the way that the Connected Devices Platform Servic... | S | |
CVE-2020-0741 | An elevation of privilege vulnerability exists in the way that the Connected Devices Platform Servic... | S | |
CVE-2020-0742 | An elevation of privilege vulnerability exists in the way that the Connected Devices Platform Servic... | S | |
CVE-2020-0743 | An elevation of privilege vulnerability exists in the way that the Connected Devices Platform Servic... | S | |
CVE-2020-0744 | An information disclosure vulnerability exists in the way that the Windows Graphics Device Interface... | S | |
CVE-2020-0745 | An elevation of privilege vulnerability exists when the Windows Graphics Component improperly handle... | S | |
CVE-2020-0746 | An information disclosure vulnerability exists in the way that Microsoft Graphics Components handle ... | S | |
CVE-2020-0747 | An elevation of privilege vulnerability exists when the Windows Data Sharing Service improperly hand... | S | |
CVE-2020-0748 | An information disclosure vulnerability exists in the Cryptography Next Generation (CNG) service whe... | S | |
CVE-2020-0749 | An elevation of privilege vulnerability exists in the way that the Connected Devices Platform Servic... | S | |
CVE-2020-0750 | An elevation of privilege vulnerability exists in the way that the Connected Devices Platform Servic... | S | |
CVE-2020-0751 | A denial of service vulnerability exists when Microsoft Hyper-V on a host server fails to properly v... | S | |
CVE-2020-0752 | An elevation of privilege vulnerability exists in the way that the Windows Search Indexer handles ob... | S | |
CVE-2020-0753 | An elevation of privilege vulnerability exists in Windows Error Reporting (WER) when WER handles and... | S | |
CVE-2020-0754 | An elevation of privilege vulnerability exists in Windows Error Reporting (WER) when WER handles and... | S | |
CVE-2020-0755 | An information disclosure vulnerability exists in the Cryptography Next Generation (CNG) service whe... | S | |
CVE-2020-0756 | An information disclosure vulnerability exists in the Cryptography Next Generation (CNG) service whe... | S | |
CVE-2020-0757 | An elevation of privilege vulnerability exists when Windows improperly handles Secure Socket Shell r... | S | |
CVE-2020-0758 | An elevation of privilege vulnerability exists when Azure DevOps Server and Team Foundation Services... | S | |
CVE-2020-0759 | A remote code execution vulnerability exists in Microsoft Excel software when the software fails to ... | S | |
CVE-2020-0760 | A remote code execution vulnerability exists when Microsoft Office improperly loads arbitrary type l... | S | |
CVE-2020-0761 | Active Directory Remote Code Execution Vulnerability | S | |
CVE-2020-0762 | An elevation of privilege vulnerability exists when Windows Defender Security Center handles certain... | S | |
CVE-2020-0763 | An elevation of privilege vulnerability exists when Windows Defender Security Center handles certain... | S | |
CVE-2020-0764 | Windows Storage Services Elevation of Privilege Vulnerability | S | |
CVE-2020-0765 | An information disclosure vulnerability exists in the Remote Desktop Connection Manager (RDCMan) app... | S | |
CVE-2020-0766 | Microsoft Store Runtime Elevation of Privilege Vulnerability | S | |
CVE-2020-0767 | A remote code execution vulnerability exists in the way that the ChakraCore scripting engine handles... | S | |
CVE-2020-0768 | A remote code execution vulnerability exists in the way the scripting engine handles objects in memo... | S | |
CVE-2020-0769 | An elevation of privilege vulnerability exists when the Windows CSC Service improperly handles memor... | S | |
CVE-2020-0770 | An elevation of privilege vulnerability exists when the Windows ActiveX Installer Service improperly... | S | |
CVE-2020-0771 | An elevation of privilege vulnerability exists when the Windows CSC Service improperly handles memor... | S | |
CVE-2020-0772 | An elevation of privilege vulnerability exists when Windows Error Reporting improperly handles memor... | S | |
CVE-2020-0773 | An elevation of privilege vulnerability exists when the Windows ActiveX Installer Service improperly... | S | |
CVE-2020-0774 | An information disclosure vulnerability exists when the Windows GDI component improperly discloses t... | S | |
CVE-2020-0775 | An information disclosure vulnerability exists when Windows Error Reporting improperly handles file ... | S | |
CVE-2020-0776 | An elevation of privilege vulnerability exists when the Windows AppX Deployment Server improperly ha... | S | |
CVE-2020-0777 | An elevation of privilege vulnerability exists when the Windows Work Folder Service improperly handl... | S | |
CVE-2020-0778 | An elevation of privilege vulnerability exists in the way that the Windows Network Connections Servi... | S | |
CVE-2020-0779 | An elevation of privilege vulnerability exists in the Windows Installer when MSI packages process sy... | S | |
CVE-2020-0780 | An elevation of privilege vulnerability exists in the way that the Windows Network List Service hand... | S | |
CVE-2020-0781 | An elevation of privilege vulnerability exists when the Windows Universal Plug and Play (UPnP) servi... | S | |
CVE-2020-0782 | Windows Cryptographic Catalog Services Elevation of Privilege Vulnerability | S | |
CVE-2020-0783 | An elevation of privilege vulnerability exists when the Windows Universal Plug and Play (UPnP) servi... | S | |
CVE-2020-0784 | An elevation of privilege vulnerability exists when DirectX improperly handles objects in memory, ak... | S | |
CVE-2020-0785 | An elevation of privilege vulnerability exists when the Windows User Profile Service (ProfSvc) impro... | S | |
CVE-2020-0786 | A denial of service vulnerability exists when the Windows Tile Object Service improperly handles har... | S | |
CVE-2020-0787 | An elevation of privilege vulnerability exists when the Windows Background Intelligent Transfer Serv... | KEV E S | |
CVE-2020-0788 | An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properl... | S | |
CVE-2020-0789 | A denial of service vulnerability exists when the Visual Studio Extension Installer Service improper... | S | |
CVE-2020-0790 | Microsoft splwow64 Elevation of Privilege Vulnerability | S | |
CVE-2020-0791 | An elevation of privilege vulnerability exists when the Windows Graphics Component improperly handle... | S | |
CVE-2020-0792 | An elevation of privilege vulnerability exists when the Windows Graphics Component improperly handle... | S | |
CVE-2020-0793 | An elevation of privilege vulnerability exists when the Diagnostics Hub Standard Collector Service i... | S | |
CVE-2020-0794 | A denial of service vulnerability exists when Windows improperly handles objects in memory, aka 'Win... | S | |
CVE-2020-0795 | This vulnerability is caused when SharePoint Server does not properly sanitize a specially crafted r... | S | |
CVE-2020-0796 | A remote code execution vulnerability exists in the way that the Microsoft Server Message Block 3.1.... | KEV E S | |
CVE-2020-0797 | An elevation of privilege vulnerability exists when the Windows Work Folder Service improperly handl... | S | |
CVE-2020-0798 | An elevation of privilege vulnerability exists in the Windows Installer when the Windows Installer f... | S | |
CVE-2020-0799 | An elevation of privilege vulnerability exists in Microsoft Windows when the Windows kernel fails to... | S | |
CVE-2020-0800 | An elevation of privilege vulnerability exists when the Windows Work Folder Service improperly handl... | S | |
CVE-2020-0801 | A memory corruption vulnerability exists when Windows Media Foundation improperly handles objects in... | S | |
CVE-2020-0802 | An elevation of privilege vulnerability exists in the way that the Windows Network Connections Servi... | S | |
CVE-2020-0803 | An elevation of privilege vulnerability exists in the way that the Windows Network Connections Servi... | S | |
CVE-2020-0804 | An elevation of privilege vulnerability exists in the way that the Windows Network Connections Servi... | S | |
CVE-2020-0805 | Projected Filesystem Security Feature Bypass Vulnerability | S | |
CVE-2020-0806 | An elevation of privilege vulnerability exists in Windows Error Reporting (WER) when WER handles and... | S | |
CVE-2020-0807 | A memory corruption vulnerability exists when Windows Media Foundation improperly handles objects in... | S | |
CVE-2020-0808 | An elevation of privilege vulnerability exists in the way the Provisioning Runtime validates certain... | S | |
CVE-2020-0809 | A memory corruption vulnerability exists when Windows Media Foundation improperly handles objects in... | S | |
CVE-2020-0810 | An elevation of privilege vulnerability exists when the Diagnostics Hub Standard Collector or the Vi... | S | |
CVE-2020-0811 | A remote code execution vulnerability exists in the way that the Chakra scripting engine handles obj... | S | |
CVE-2020-0812 | A remote code execution vulnerability exists in the way that the Chakra scripting engine handles obj... | S | |
CVE-2020-0813 | An information disclosure vulnerability exists when Chakra improperly discloses the contents of its ... | S | |
CVE-2020-0814 | An elevation of privilege vulnerability exists in Windows Installer because of the way Windows Insta... | S | |
CVE-2020-0815 | An elevation of privilege vulnerability exists when Azure DevOps Server and Team Foundation Services... | S | |
CVE-2020-0816 | A remote code execution vulnerability exists when Microsoft Edge improperly accesses objects in memo... | S | |
CVE-2020-0819 | An elevation of privilege vulnerability exists when the Windows Device Setup Manager improperly hand... | S | |
CVE-2020-0820 | An information disclosure vulnerability exists when Media Foundation improperly handles objects in m... | S | |
CVE-2020-0821 | An information disclosure vulnerability exists when the Windows kernel improperly handles objects in... | S | |
CVE-2020-0822 | An elevation of privilege vulnerability exists when the Windows Language Pack Installer improperly h... | S | |
CVE-2020-0823 | A remote code execution vulnerability exists in the way that the ChakraCore scripting engine handles... | S | |
CVE-2020-0824 | A remote code execution vulnerability exists when Internet Explorer improperly accesses objects in m... | S | |
CVE-2020-0825 | A remote code execution vulnerability exists in the way that the ChakraCore scripting engine handles... | S | |
CVE-2020-0826 | A remote code execution vulnerability exists in the way that the ChakraCore scripting engine handles... | S | |
CVE-2020-0827 | A remote code execution vulnerability exists in the way that the ChakraCore scripting engine handles... | S | |
CVE-2020-0828 | A remote code execution vulnerability exists in the way that the ChakraCore scripting engine handles... | S | |
CVE-2020-0829 | A remote code execution vulnerability exists in the way that the ChakraCore scripting engine handles... | S | |
CVE-2020-0830 | A remote code execution vulnerability exists in the way the scripting engine handles objects in memo... | S | |
CVE-2020-0831 | A remote code execution vulnerability exists in the way that the ChakraCore scripting engine handles... | S | |
CVE-2020-0832 | A remote code execution vulnerability exists in the way that the scripting engine handles objects in... | S | |
CVE-2020-0833 | A remote code execution vulnerability exists in the way that the scripting engine handles objects in... | S | |
CVE-2020-0834 | An elevation of privilege vulnerability exists when Windows improperly handles calls to Advanced Loc... | S | |
CVE-2020-0835 | An elevation of privilege vulnerability exists when Windows Defender antimalware platform improperly... | S | |
CVE-2020-0836 | Windows DNS Denial of Service Vulnerability | S | |
CVE-2020-0837 | ADFS MFA Elevation of Privilege Vulnerability | S | |
CVE-2020-0838 | NTFS Elevation of Privilege Vulnerability | S | |
CVE-2020-0839 | Windows dnsrslvr.dll Elevation of Privilege Vulnerability | S | |
CVE-2020-0840 | An elevation of privilege vulnerability exists when Windows improperly handles hard links, aka 'Wind... | S | |
CVE-2020-0841 | An elevation of privilege vulnerability exists when Windows improperly handles hard links, aka 'Wind... | S | |
CVE-2020-0842 | An elevation of privilege vulnerability exists in Windows Installer because of the way Windows Insta... | S | |
CVE-2020-0843 | An elevation of privilege vulnerability exists in Windows Installer because of the way Windows Insta... | S | |
CVE-2020-0844 | An elevation of privilege vulnerability exists when Connected User Experiences and Telemetry Service... | S | |
CVE-2020-0845 | An elevation of privilege vulnerability exists in the way that the Windows Network Connections Servi... | S | |
CVE-2020-0847 | A remote code execution vulnerability exists in the way that the VBScript engine handles objects in ... | S | |
CVE-2020-0848 | A remote code execution vulnerability exists in the way that the ChakraCore scripting engine handles... | S | |
CVE-2020-0849 | An elevation of privilege vulnerability exists when Windows improperly handles hard links, aka 'Wind... | S | |
CVE-2020-0850 | A remote code execution vulnerability exists in Microsoft Word software when it fails to properly ha... | S | |
CVE-2020-0851 | A remote code execution vulnerability exists in Microsoft Word software when it fails to properly ha... | S | |
CVE-2020-0852 | A remote code execution vulnerability exists in Microsoft Word software when it fails to properly ha... | S | |
CVE-2020-0853 | An information disclosure vulnerability exists in Windows when the Windows Imaging Component fails t... | S | |
CVE-2020-0854 | An elevation of privilege vulnerability exists when Windows Mobile Device Management (MDM) Diagnosti... | S | |
CVE-2020-0855 | A remote code execution vulnerability exists in Microsoft Word software when it fails to properly ha... | S | |
CVE-2020-0856 | Active Directory Information Disclosure Vulnerability | S | |
CVE-2020-0857 | An elevation of privilege vulnerability exists in the way that the Windows Search Indexer handles ob... | S | |
CVE-2020-0858 | An elevation of privilege vulnerability exists when the "Public Account Pictures" folder i... | S | |
CVE-2020-0859 | An information vulnerability exists when Windows Modules Installer Service improperly discloses file... | S | |
CVE-2020-0860 | An elevation of privilege vulnerability exists when the Windows ActiveX Installer Service improperly... | S | |
CVE-2020-0861 | An information disclosure vulnerability exists when the Windows Network Driver Interface Specificati... | S | |
CVE-2020-0863 | An information vulnerability exists when Windows Connected User Experiences and Telemetry Service im... | S | |
CVE-2020-0864 | An elevation of privilege vulnerability exists when the Windows Work Folder Service improperly handl... | S | |
CVE-2020-0865 | An elevation of privilege vulnerability exists when the Windows Work Folder Service improperly handl... | S | |
CVE-2020-0866 | An elevation of privilege vulnerability exists when the Windows Work Folder Service improperly handl... | S | |
CVE-2020-0867 | An elevation of privilege vulnerability exists when the Windows Update Orchestrator Service improper... | S | |
CVE-2020-0868 | An elevation of privilege vulnerability exists when the Windows Update Orchestrator Service improper... | S | |
CVE-2020-0869 | A memory corruption vulnerability exists when Windows Media Foundation improperly handles objects in... | S | |
CVE-2020-0870 | Shell infrastructure component Elevation of Privilege Vulnerability | S | |
CVE-2020-0871 | An information disclosure vulnerability exists when Windows Network Connections Service fails to pro... | S | |
CVE-2020-0872 | A remote code execution vulnerability exists in Application Inspector version v1.0.23 or earlier whe... | S | |
CVE-2020-0874 | An information disclosure vulnerability exists in the way that the Windows Graphics Device Interface... | S | |
CVE-2020-0875 | Microsoft splwow64 Information Disclosure Vulnerability | S | |
CVE-2020-0876 | An information disclosure vulnerability exists when the win32k component improperly provides kernel ... | S | |
CVE-2020-0877 | An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properl... | S | |
CVE-2020-0878 | Microsoft Browser Memory Corruption Vulnerability | KEV S | |
CVE-2020-0879 | An information disclosure vulnerability exists in the way that the Windows Graphics Device Interface... | S | |
CVE-2020-0880 | An information disclosure vulnerability exists when the Windows GDI component improperly discloses t... | S | |
CVE-2020-0881 | A remote code execution vulnerability exists in the way that the Windows Graphics Device Interface (... | S | |
CVE-2020-0882 | An information disclosure vulnerability exists when the Windows GDI component improperly discloses t... | S | |
CVE-2020-0883 | A remote code execution vulnerability exists in the way that the Windows Graphics Device Interface (... | S | |
CVE-2020-0884 | A spoofing vulnerability exists in Microsoft Visual Studio as it includes a reply URL that is not se... | S | |
CVE-2020-0885 | An information disclosure vulnerability exists when the Windows GDI component improperly discloses t... | S | |
CVE-2020-0886 | Windows Storage Services Elevation of Privilege Vulnerability | S | |
CVE-2020-0887 | An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properl... | S | |
CVE-2020-0888 | An elevation of privilege vulnerability exists when DirectX improperly handles objects in memory, ak... | S | |
CVE-2020-0889 | A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles... | S | |
CVE-2020-0890 | Windows Hyper-V Denial of Service Vulnerability | S | |
CVE-2020-0891 | This vulnerability is caused when SharePoint Server does not properly sanitize a specially crafted r... | S | |
CVE-2020-0892 | A remote code execution vulnerability exists in Microsoft Word software when it fails to properly ha... | S | |
CVE-2020-0893 | A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly... | S | |
CVE-2020-0894 | A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly... | S | |
CVE-2020-0895 | A remote code execution vulnerability exists in the way that the VBScript engine handles objects in ... | S | |
CVE-2020-0896 | An elevation of privilege vulnerability exists when Windows improperly handles hard links, aka 'Wind... | S | |
CVE-2020-0897 | An elevation of privilege vulnerability exists when the Windows Work Folder Service improperly handl... | S | |
CVE-2020-0898 | An elevation of privilege vulnerability exists when the Windows Graphics Component improperly handle... | S | |
CVE-2020-0899 | An elevation of privilege vulnerability exists when Microsoft Visual Studio updater service improper... | S | |
CVE-2020-0900 | An elevation of privilege vulnerability exists when the Visual Studio Extension Installer Service im... | S | |
CVE-2020-0901 | A remote code execution vulnerability exists in Microsoft Excel software when the software fails to ... | S | |
CVE-2020-0902 | An elevation of privilege vulnerability exists in Service Fabric File Store Service under certain co... | S | |
CVE-2020-0903 | A cross-site-scripting (XSS) vulnerability exists when Microsoft Exchange Server does not properly s... | S | |
CVE-2020-0904 | Windows Hyper-V Denial of Service Vulnerability | S | |
CVE-2020-0905 | An remote code execution vulnerability exists in Microsoft Dynamics Business Central, aka 'Dynamics ... | S | |
CVE-2020-0906 | A remote code execution vulnerability exists in Microsoft Excel software when the software fails to ... | S | |
CVE-2020-0907 | A remote code execution vulnerability exists in the way that Microsoft Graphics Components handle ob... | S | |
CVE-2020-0908 | Windows Text Service Module Remote Code Execution Vulnerability | S | |
CVE-2020-0909 | A denial of service vulnerability exists when Hyper-V on a Windows Server fails to properly handle s... | S | |
CVE-2020-0910 | A remote code execution vulnerability exists when Windows Hyper-V on a host server fails to properly... | S | |
CVE-2020-0911 | Windows Modules Installer Elevation of Privilege Vulnerability | S | |
CVE-2020-0912 | Windows Function Discovery SSDP Provider Elevation of Privilege Vulnerability | S | |
CVE-2020-0913 | An elevation of privilege vulnerability exists when the Windows kernel fails to properly handle obje... | S | |
CVE-2020-0914 | Windows State Repository Service Information Disclosure Vulnerability | S | |
CVE-2020-0915 | An elevation of privilege vulnerability exists in the way that the Windows Graphics Device Interface... | S | |
CVE-2020-0916 | An elevation of privilege vulnerability exists in the way that the Windows Graphics Device Interface... | S | |
CVE-2020-0917 | An elevation of privilege vulnerability exists when Windows Hyper-V on a host server fails to proper... | S | |
CVE-2020-0918 | An elevation of privilege vulnerability exists when Windows Hyper-V on a host server fails to proper... | S | |
CVE-2020-0919 | An elevation of privilege vulnerability exists in Remote Desktop App for Mac in the way it allows an... | S | |
CVE-2020-0920 | A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to chec... | S | |
CVE-2020-0921 | Microsoft Graphics Component Denial of Service Vulnerability | S | |
CVE-2020-0922 | Microsoft COM for Windows Remote Code Execution Vulnerability | S | |
CVE-2020-0923 | A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly... | S | |
CVE-2020-0924 | A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly... | S | |
CVE-2020-0925 | A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly... | S | |
CVE-2020-0926 | A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly... | S | |
CVE-2020-0927 | A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly... | S | |
CVE-2020-0928 | Windows Kernel Information Disclosure Vulnerability | S | |
CVE-2020-0929 | A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to chec... | S | |
CVE-2020-0930 | A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly... | S | |
CVE-2020-0931 | A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to chec... | S | |
CVE-2020-0932 | A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to chec... | S | |
CVE-2020-0933 | A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly... | S | |
CVE-2020-0934 | An elevation of privilege vulnerability exists when the Windows WpcDesktopMonSvc improperly manages ... | S | |
CVE-2020-0935 | An elevation of privilege vulnerability exists when the OneDrive for Windows Desktop application imp... | S | |
CVE-2020-0936 | An elevation of privilege vulnerability exists when a Windows scheduled task improperly handles file... | S | |
CVE-2020-0937 | An information disclosure vulnerability exists when Media Foundation improperly handles objects in m... | S | |
CVE-2020-0938 | A remote code execution vulnerability exists in Microsoft Windows when the Windows Adobe Type Manage... | KEV S | |
CVE-2020-0939 | An information disclosure vulnerability exists when Media Foundation improperly handles objects in m... | S | |
CVE-2020-0940 | An elevation of privilege vulnerability exists in the way the Windows Push Notification Service hand... | S | |
CVE-2020-0941 | Win32k Information Disclosure Vulnerability | S | |
CVE-2020-0942 | An elevation of privilege vulnerability exists when Connected User Experiences and Telemetry Service... | S | |
CVE-2020-0943 | An authentication bypass vulnerability exists in Microsoft YourPhoneCompanion application for Androi... | S | |
CVE-2020-0944 | An elevation of privilege vulnerability exists when Connected User Experiences and Telemetry Service... | S | |
CVE-2020-0945 | An information disclosure vulnerability exists when Media Foundation improperly handles objects in m... | S | |
CVE-2020-0946 | An information disclosure vulnerability exists when Media Foundation improperly handles objects in m... | S | |
CVE-2020-0947 | An information disclosure vulnerability exists when Media Foundation improperly handles objects in m... | S | |
CVE-2020-0948 | A memory corruption vulnerability exists when Windows Media Foundation improperly handles objects in... | S | |
CVE-2020-0949 | A memory corruption vulnerability exists when Windows Media Foundation improperly handles objects in... | S | |
CVE-2020-0950 | A memory corruption vulnerability exists when Windows Media Foundation improperly handles objects in... | S | |
CVE-2020-0951 | Windows Defender Application Control Security Feature Bypass Vulnerability | S | |
CVE-2020-0952 | An information disclosure vulnerability exists when the Windows GDI component improperly discloses t... | S | |
CVE-2020-0953 | A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles... | S | |
CVE-2020-0954 | A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly... | S | |
CVE-2020-0955 | An information disclosure vulnerability exists when certain central processing units (CPU) speculati... | S | |
CVE-2020-0956 | An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails ... | S | |
CVE-2020-0957 | An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails ... | S | |
CVE-2020-0958 | An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails ... | S | |
CVE-2020-0959 | A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles... | S | |
CVE-2020-0960 | A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles... | S | |
CVE-2020-0961 | A remote code execution vulnerability exists when the Microsoft Office Access Connectivity Engine im... | S | |
CVE-2020-0962 | An information disclosure vulnerability exists when the win32k component improperly provides kernel ... | S | |
CVE-2020-0963 | An information disclosure vulnerability exists when the Windows GDI component improperly discloses t... | S | |
CVE-2020-0964 | A remote code execution vulnerability exists in the way that the Windows Graphics Device Interface (... | S | |
CVE-2020-0965 | A remoted code execution vulnerability exists in the way that Microsoft Windows Codecs Library handl... | S | |
CVE-2020-0966 | A remote code execution vulnerability exists in the way that the VBScript engine handles objects in ... | S | |
CVE-2020-0967 | A remote code execution vulnerability exists in the way that the VBScript engine handles objects in ... | S | |
CVE-2020-0968 | A remote code execution vulnerability exists in the way that the scripting engine handles objects in... | KEV S | |
CVE-2020-0969 | A remote code execution vulnerability exists in the way that the Chakra scripting engine handles obj... | S | |
CVE-2020-0970 | A remote code execution vulnerability exists in the way that the ChakraCore scripting engine handles... | S | |
CVE-2020-0971 | A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to chec... | S | |
CVE-2020-0972 | A spoofing vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specia... | S | |
CVE-2020-0973 | A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly... | S | |
CVE-2020-0974 | A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to chec... | S | |
CVE-2020-0975 | A spoofing vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specia... | S | |
CVE-2020-0976 | A spoofing vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specia... | S | |
CVE-2020-0977 | A spoofing vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specia... | S | |
CVE-2020-0978 | A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly... | S | |
CVE-2020-0979 | A remote code execution vulnerability exists in Microsoft Excel software when the software fails to ... | S | |
CVE-2020-0980 | A remote code execution vulnerability exists in Microsoft Word software when it fails to properly ha... | S | |
CVE-2020-0981 | A security feature bypass vulnerability exists when Windows fails to properly handle token relations... | S | |
CVE-2020-0982 | An information disclosure vulnerability exists when the Microsoft Windows Graphics Component imprope... | S | |
CVE-2020-0983 | An elevation of privilege vulnerability exists when the Windows Delivery Optimization service improp... | S | |
CVE-2020-0984 | An elevation of privilege vulnerability exists when the Microsoft AutoUpdate (MAU) application for M... | S | |
CVE-2020-0985 | An elevation of privilege vulnerability exists when the Windows Update Stack fails to properly handl... | S | |
CVE-2020-0986 | An elevation of privilege vulnerability exists when the Windows kernel fails to properly handle obje... | KEV S | |
CVE-2020-0987 | An information disclosure vulnerability exists when the Microsoft Windows Graphics Component imprope... | S | |
CVE-2020-0988 | A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles... | S | |
CVE-2020-0989 | Windows Mobile Device Management Diagnostics Information Disclosure Vulnerability | S | |
CVE-2020-0991 | A remote code execution vulnerability exists in Microsoft Office software when the software fails to... | S | |
CVE-2020-0992 | A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles... | S | |
CVE-2020-0993 | A denial of service vulnerability exists in Windows DNS when it fails to properly handle queries, ak... | S | |
CVE-2020-0994 | A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles... | S | |
CVE-2020-0995 | A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles... | S | |
CVE-2020-0996 | An elevation of privilege vulnerability exists when the Windows Update Stack fails to properly handl... | S | |
CVE-2020-0997 | Windows Camera Codec Pack Remote Code Execution Vulnerability | S | |
CVE-2020-0998 | Windows Graphics Component Elevation of Privilege Vulnerability | S | |
CVE-2020-0999 | A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles... | S |