Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2020-0236

EPSS 0.31% · P54
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2020-0236

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
In A2DP_GetCodecType of a2dp_codec_config, there is a possible out-of-bounds read due to improper input validation. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android, Versions: Android-10, Android ID: A-79703353.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Google Android 缓冲区错误漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Google Android是美国~谷歌~开放手持设备联盟(Google)的的一套以Linux为基础的开源操作系统。 Google Android 的 A2DP_GetCodecType存在缓冲区错误漏洞,该漏洞源于程序有可能由于输入验证不当而出现越界读取。这可能导致远程信息公开,而不需要额外的执行权限。以下产品或版本存在此漏洞:Android-10, Android ID: A-79703353。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-Android Android 10 -

II. Public POCs for CVE-2020-0236

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2020-0236

登录查看更多情报信息。

Same Patch Batch · n/a · 2021-01-25 · 32 CVEs total

CVE-2020-35854Textpattern 跨站脚本漏洞
CVE-2020-27542Rostelecom CS-CSHW 命令注入漏洞
CVE-2020-27541Rostelecom CS-C2SHW 缓冲区错误漏洞
CVE-2020-27539Rostelecom CS-CSHW 缓冲区错误漏洞
CVE-2020-27540Rostelecom CS-C2SHW 数据伪造问题漏洞
CVE-2020-35845FastStone Image Viewer 缓冲区错误漏洞
CVE-2020-35844FastStone Image Viewer 缓冲区错误漏洞
CVE-2020-35843FastStone Image Viewer 缓冲区错误漏洞
CVE-2020-27814OpenJPEG 代码问题漏洞
CVE-2020-25737Hackolade 安全漏洞
CVE-2021-22698Schneider Electric EcoStruxure Power Build - Rapsody 代码问题漏洞
CVE-2021-22697Schneider Electric EcoStruxure Power Build - Rapsody 代码问题漏洞
CVE-2020-28221Opera Software Opera 输入验证错误漏洞
CVE-2021-3185gst-plugins-bad 安全漏洞
CVE-2020-35513Linux Kernel NFS 安全漏洞
CVE-2021-3278Local Service Search Engine Management System SQL注入漏洞
CVE-2020-35576TP-LINK TL-WR841N 操作系统命令注入漏洞
CVE-2020-358534images Image Gallery Management System 跨站脚本漏洞
CVE-2020-35270Projectnotes Student Result Management System SQL注入漏洞
CVE-2020-36221OpenLDAP 数字错误漏洞

Showing top 20 of 32 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2020-0236

No comments yet


Leave a comment