CVE-2020-0034

In vp8_decode_frame of decodeframe.c, there is a possible out of bounds read due to improper input validation. This could lead to remote information disclosure if error correction were turned on, with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.0 Android-8.1Android ID: A-62458770
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:google:android:8.0:*:*:*:*:*:*:*
cpe:2.3:o:google:android:8.1:*:*:*:*:*:*:*

Configuration 2 (hide)

cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*

History

29 Nov 2021, 17:26

Type Values Removed Values Added
CWE CWE-20
References (MLIST) https://lists.debian.org/debian-lts-announce/2021/11/msg00024.html - (MLIST) https://lists.debian.org/debian-lts-announce/2021/11/msg00024.html - Mailing List, Third Party Advisory
References (SUSE) http://lists.opensuse.org/opensuse-security-announce/2020-05/msg00048.html - (SUSE) http://lists.opensuse.org/opensuse-security-announce/2020-05/msg00048.html - Mailing List, Third Party Advisory
CPE cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*

28 Nov 2021, 00:15

Type Values Removed Values Added
CWE CWE-20
References
  • (MLIST) https://lists.debian.org/debian-lts-announce/2021/11/msg00024.html -

Information

Published : 2020-03-10 20:15

Updated : 2023-12-10 13:13


NVD link : CVE-2020-0034

Mitre link : CVE-2020-0034

CVE.ORG link : CVE-2020-0034


JSON object : View

Products Affected

debian

  • debian_linux

google

  • android
CWE
CWE-125

Out-of-bounds Read