CVE-2020-0022
published 2020-02-13CVE-2020-0022: In reassemble_and_dispatch of packet_fragmenter.cc, there is possible out of bounds write due to an incorrect bounds calculation. This could lead to remote…
PriorityP355high8.8CVSS 3.1
AVAACLPRNUINSUCHIHAH
EPSS
5.38%
91.8th percentile
In reassemble_and_dispatch of packet_fragmenter.cc, there is possible out of bounds write due to an incorrect bounds calculation. This could lead to remote code execution over Bluetooth with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.0 Android-8.1 Android-9 Android-10Android ID: A-143894715
Affected
27 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| android | — | — | |
| android | — | — | |
| android | — | — | |
| android | — | — | |
| android | — | — | |
| android | — | — | |
| huawei | honor_8a_firmware | < 9.1.0.291\(c185e3r4p1\) | 9.1.0.291\(c185e3r4p1\) |
| huawei | honor_8x_firmware | < 10.0.0.183\(c185e2r6p1\) | 10.0.0.183\(c185e2r6p1\) |
| huawei | honor_view_20_firmware | < 10.0.0.195\(c636e3r4p3\) | 10.0.0.195\(c636e3r4p3\) |
| huawei | mate_20_firmware | < 10.0.0.195\(c00e74r3p8\) | 10.0.0.195\(c00e74r3p8\) |
| huawei | mate_20_pro_firmware | < 10.0.0.196\(c185e7r2p4\) | 10.0.0.196\(c185e7r2p4\) |
| huawei | mate_20_x_firmware | < 10.0.0.195\(c00e74r2p8\) | 10.0.0.195\(c00e74r2p8\) |
| huawei | mate_30_5g_firmware | < 10.0.0.203\(c00e202r7p2\) | 10.0.0.203\(c00e202r7p2\) |
| huawei | mate_30_firmware | < 10.0.0.203\(c00e202r7p2\) | 10.0.0.203\(c00e202r7p2\) |
| huawei | mate_30_pro_5g_firmware | < 10.0.0.203\(c00e202r7p2\) | 10.0.0.203\(c00e202r7p2\) |
| huawei | mate_30_pro_firmware | < 10.0.0.203\(c00e202r7p2\) | 10.0.0.203\(c00e202r7p2\) |
| huawei | nova_3_firmware | < 9.1.0.338\(c00e333r1p1t8\) | 9.1.0.338\(c00e333r1p1t8\) |
| huawei | nova_lite_3_firmware | < 9.1.0.322\(c635e8r2p2\) | 9.1.0.322\(c635e8r2p2\) |
| huawei | p20_firmware | < 10.0.0.162\(c00e156r1p4\) | 10.0.0.162\(c00e156r1p4\) |
| huawei | p20_pro_firmware | < 10.0.0.162\(c00e156r1p4\) | 10.0.0.162\(c00e156r1p4\) |
| huawei | p30_firmware | < 10.0.0.190\(c432e22r2p5\) | 10.0.0.190\(c432e22r2p5\) |
| huawei | p30_pro_firmware | < 10.0.0.195\(c00e85r2p8\) | 10.0.0.195\(c00e85r2p8\) |
| huawei | p_smart_2019_firmware | < 10.0.0.180\(c185e3r4p1\) | 10.0.0.180\(c185e3r4p1\) |
| huawei | p_smart_firmware | < 9.1.0.193\(c605e6r1p5t8\) | 9.1.0.193\(c605e6r1p5t8\) |
| huawei | y6_2019_firmware | < 9.1.0.290\(c185e5r4p1\) | 9.1.0.290\(c185e5r4p1\) |
CVSS provenance
nvdv3.18.8HIGHCVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvdv2.08.3HIGHAV:A/AC:L/Au:N/C:C/I:C/A:C
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-55v6-vvqw-j3qq: In reassemble_and_dispatch of packet_fragmenter
ghsa_unreviewed·2022-05-24
CVE-2020-0022 [HIGH] CWE-682 GHSA-55v6-vvqw-j3qq: In reassemble_and_dispatch of packet_fragmenter
In reassemble_and_dispatch of packet_fragmenter.cc, there is possible out of bounds write due to an incorrect bounds calculation. This could lead to remote code execution over Bluetooth with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.0 Android-8.1 Android-9 Android-10Android ID: A-143894715
Android
CVE-2020-0022: Android Security Bulletin 2020-02-01
CVE: CVE-2020-0022
Severity: MEDIUM
Type: DoS
Affected AOSP versions: 10
References: A-143894715
vendor_android·2020-02-01·CVSS 8.8
CVE-2020-0022 [HIGH] CVE-2020-0022: Android Security Bulletin 2020-02-01
CVE: CVE-2020-0022
Severity: MEDIUM
Type: DoS
Affected AOSP versions: 10
References: A-143894715
Android Security Bulletin 2020-02-01
CVE: CVE-2020-0022
Severity: MEDIUM
Type: DoS
Affected AOSP versions: 10
References: A-143894715
VMware
VMware ESXi and Horizon DaaS updates address OpenSLP remote code execution vulnerability (CVE-2019-5544)
vendor_vmware·2019-12-05·CVSS 9.8
CVE-2019-5544 [CRITICAL] VMware ESXi and Horizon DaaS updates address OpenSLP remote code execution vulnerability (CVE-2019-5544)
VMSA-2019-0022: VMware ESXi and Horizon DaaS updates address OpenSLP remote code execution vulnerability (CVE-2019-5544)
| Advisory Severity | Critical | Synopsis | VMware ESXi and Horizon DaaS updates address OpenSLP remote code execution vulnerability (CVE-2019-5544) | Issue Date | 2019-12-05 | Updated On | 2020-05-08 | CVE(s) | CVE-2019-5544
CVEs: CVE-2019-5544
Affected products: VMware ESXi, VMware Horizon, vSphere
No detection rules found.
No public exploits indexed.
arXiv
On the Privacy and Integrity Risks of Contact-Tracing Applications
arxiv_fulltext·2020-12-08
On the Privacy and Integrity Risks of Contact-Tracing Applications
[1]Jianwei Huang
[2]Vinod Yegneswaran
[3]Phillip Porras
[4]Guofei Gu
[1]Texas A&M University, E-mail: [email protected]
[2]SRI International, E-mail: [email protected]
[3]SRI International, E-mail: [email protected]
[4]Texas A&M University, E-mail: [email protected]
On the Privacy and Integrity Risks of Contact-Tracing Applications
On the Privacy and Integrity Risks of Contact-Tracing Applications
## Abstract
Smartphone-based contact-tracing applications are at the epicenter of the global fight against the Covid-19 pandemic. While governments and
healthcare agencies are eager to mandate the deployment of such applications en-masse, they face
increasing scrutiny from popular press, security companies, and human
rights watch agencies that fear the exploitation of these technologi
arXiv
Frankenstein: Advanced Wireless Fuzzing to Exploit New Bluetooth Escalation Targets
arxiv_fulltext·2020-06-17
Frankenstein: Advanced Wireless Fuzzing to Exploit New Bluetooth Escalation Targets
Frankenstein: Advanced Wireless Fuzzing to \ New Bluetooth Escalation Targets
Jan Ruge
Secure Mobile Networking Lab
TU Darmstadt
Jiska Classen
Secure Mobile Networking Lab
TU Darmstadt
Francesco Gringoli
Dept. of Information Engineering
University of Brescia
Matthias Hollick
Secure Mobile Networking Lab
TU Darmstadt
empty
## Abstract
Wireless communication standards and implementations have a troubled history regarding security.
Since most implementations and firmwares are closed-source, fuzzing remains one of the main methods to uncover RCE vulnerabilities in deployed systems.
Generic over-the-air fuzzing suffers from several shortcomings, such as constrained speed, limited repeatability, and restricted ability to debug.
In this paper, we present , a fuzzing framework based
Checkpoint
10th February – Threat Intelligence Bulletin
blogs_checkpoint·2020-02-10
CVE-2019-18426 10th February – Threat Intelligence Bulletin
Latest Publications
CPR Podcast Channel
AI Research
Web 3.0 Security
Intelligence Reports
ThreatCloud AI
Threat Intelligence & Research
Zero Day Protection
Sandblast File Analysis
About Us
SUBSCRIBE
2026
2025
2024
2023
2022
2021
2020
2019
2018
2017
2016
## 10th February – Threat Intelligence Bulletin
For the latest discoveries in cyber research for the week of 10th February 2020, please download our Threat Intelligence Bulletin .
Top Attacks and Breaches
Twitter has suspended a network of fake accounts abusing its API to match millions of usernames and phone numbers. The feature, intended to indicate accounts matching existing contacts, was used on millions of randomly generated phone numbers. Twitter traces this campaign to state-sponsored actors with some evide
CWE
Out-of-bounds Write
mitre_cwe
CWE-787 Out-of-bounds Write
CWE-787: Out-of-bounds Write
The product writes data past the end, or before the beginning, of the intended buffer.
Modes of Introduction:
Phase: Implementation
Common Consequences:
Scope: Integrity. Impact: Modify Memory, Execute Unauthorized Code or Commands. Write operations could cause memory corruption. In some cases, an adversary can modify control data such as return addresses in order to execute unexpected code.
Scope: Availability. Impact: DoS: Crash, Exit, or Restart. Attempting to access out-of-range, invalid, or unauthorized memory could cause the product to crash.
Scope: Other. Impact: Unexpected State. Subsequent write operations can produce undefined or unexpected results.
Detection Methods:
Automated Static Analysis: This weakness can often be detected using automated s
CWE
Incorrect Calculation
mitre_cwe
CWE-682 Incorrect Calculation
CWE-682: Incorrect Calculation
The product performs a calculation that generates incorrect or unintended results that are later used in security-critical decisions or resource management.
When product performs a security-critical calculation incorrectly, it might lead to incorrect resource allocations, incorrect privilege assignments, or failed comparisons among other things. Many of the direct results of an incorrect calculation can lead to even larger problems such as failed protection mechanisms or even arbitrary code execution.
Modes of Introduction:
Phase: Implementation
Common Consequences:
Scope: Availability. Impact: DoS: Crash, Exit, or Restart. If the incorrect calculation causes the program to move into an unexpected state, it may lead to a crash or impairment of service.
Sc
http://packetstormsecurity.com/files/156891/Android-Bluetooth-Remote-Denial-Of-Service.htmlhttp://seclists.org/fulldisclosure/2020/Feb/10http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20200513-03-smartphone-enhttps://source.android.com/security/bulletin/2020-02-01http://packetstormsecurity.com/files/156891/Android-Bluetooth-Remote-Denial-Of-Service.htmlhttp://seclists.org/fulldisclosure/2020/Feb/10http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20200513-03-smartphone-enhttps://source.android.com/security/bulletin/2020-02-01
2020-02-13
Published