Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2020-0154

Опубликовано: 11 июн. 2020
Источник: nvd
CVSS3: 4.4
CVSS2: 2.1
EPSS Низкий

Описание

In nci_proc_core_rsp of nci_hrcv.cc, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information disclosure via compromised device firmware with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10Android ID: A-141550919

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:o:google:android:10.0:*:*:*:*:*:*:*

EPSS

Процентиль: 4%
0.00018
Низкий

4.4 Medium

CVSS3

2.1 Low

CVSS2

Дефекты

CWE-125

Связанные уязвимости

github
больше 3 лет назад

In nci_proc_core_rsp of nci_hrcv.cc, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information disclosure via compromised device firmware with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10Android ID: A-141550919

EPSS

Процентиль: 4%
0.00018
Низкий

4.4 Medium

CVSS3

2.1 Low

CVSS2

Дефекты

CWE-125