Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2020-0034

Опубликовано: 10 мар. 2020
Источник: debian
EPSS Низкий

Описание

In vp8_decode_frame of decodeframe.c, there is a possible out of bounds read due to improper input validation. This could lead to remote information disclosure if error correction were turned on, with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.0 Android-8.1Android ID: A-62458770

Пакеты

ПакетСтатусВерсия исправленияРелизТип
libvpxfixed1.7.0-3package

Примечания

  • https://github.com/webmproject/libvpx/commit/45daecb4f73a47ab3236a29a3a48c52324cbf19a

EPSS

Процентиль: 84%
0.02415
Низкий

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 5 лет назад

In vp8_decode_frame of decodeframe.c, there is a possible out of bounds read due to improper input validation. This could lead to remote information disclosure if error correction were turned on, with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.0 Android-8.1Android ID: A-62458770

CVSS3: 7.5
redhat
больше 5 лет назад

In vp8_decode_frame of decodeframe.c, there is a possible out of bounds read due to improper input validation. This could lead to remote information disclosure if error correction were turned on, with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.0 Android-8.1Android ID: A-62458770

CVSS3: 7.5
nvd
больше 5 лет назад

In vp8_decode_frame of decodeframe.c, there is a possible out of bounds read due to improper input validation. This could lead to remote information disclosure if error correction were turned on, with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.0 Android-8.1Android ID: A-62458770

suse-cvrf
около 5 лет назад

Security update for libvpx

suse-cvrf
больше 3 лет назад

Security update for libvpx

EPSS

Процентиль: 84%
0.02415
Низкий