Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2020-0034

Опубликовано: 10 мар. 2020
Источник: nvd
CVSS3: 7.5
CVSS2: 7.8
EPSS Низкий

Описание

In vp8_decode_frame of decodeframe.c, there is a possible out of bounds read due to improper input validation. This could lead to remote information disclosure if error correction were turned on, with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.0 Android-8.1Android ID: A-62458770

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:o:google:android:8.0:*:*:*:*:*:*:*
cpe:2.3:o:google:android:8.1:*:*:*:*:*:*:*
Конфигурация 2
cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*

EPSS

Процентиль: 92%
0.08121
Низкий

7.5 High

CVSS3

7.8 High

CVSS2

Дефекты

CWE-125

Связанные уязвимости

CVSS3: 7.5
ubuntu
почти 6 лет назад

In vp8_decode_frame of decodeframe.c, there is a possible out of bounds read due to improper input validation. This could lead to remote information disclosure if error correction were turned on, with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.0 Android-8.1Android ID: A-62458770

CVSS3: 7.5
redhat
почти 6 лет назад

In vp8_decode_frame of decodeframe.c, there is a possible out of bounds read due to improper input validation. This could lead to remote information disclosure if error correction were turned on, with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.0 Android-8.1Android ID: A-62458770

CVSS3: 7.5
debian
почти 6 лет назад

In vp8_decode_frame of decodeframe.c, there is a possible out of bound ...

suse-cvrf
больше 5 лет назад

Security update for libvpx

suse-cvrf
почти 4 года назад

Security update for libvpx

EPSS

Процентиль: 92%
0.08121
Низкий

7.5 High

CVSS3

7.8 High

CVSS2

Дефекты

CWE-125