Embedded System Vulnerabilities
A focused list of vulnerabilities relevant to embedded and IoT devices.
| CVE ID | Description | Severity | Published | Type |
|---|---|---|---|---|
| CVE-2020-0470 | In extend_frame_highbd of restoration.c, there is a possible out of bounds write due to a heap buffer overflow. This co… | Medium (5.5) | 2020-12-14 | Environment Specific |
| CVE-2020-0469 | In addEscrowToken of LockSettingsService.java, there is a possible loss of the synthetic password due to logic error. T… | Medium (5.5) | 2020-12-14 | Environment Specific |
| CVE-2020-0468 | In listen() and related functions of TelephonyRegistry.java, there is a possible permissions bypass of location permiss… | Medium (5.5) | 2020-12-14 | Environment Specific |
| CVE-2020-0467 | In onUserStopped of Vpn.java, there is a possible resetting of user preferences due to a logic issue. This could lead t… | Medium (5.5) | 2020-12-14 | Environment Specific |
| CVE-2020-0466 | In do_epoll_ctl and ep_loop_check_proc of eventpoll.c, there is a possible use after free due to a logic error. This co… | High (7.8) | 2020-12-14 | Environment Specific |