In reassemble_and_dispatch of packet_fragmenter.cc, there is possible out of bounds write due to an incorrect bounds calculation. This could lead to remote code execution over Bluetooth with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.0 Android-8.1 Android-9 Android-10Android ID: A-143894715

Project Subscriptions

Vendors Products
Android Subscribe
Honor 8a Subscribe
Honor 8a Firmware Subscribe
Honor 8x Subscribe
Honor 8x Firmware Subscribe
Honor View 20 Subscribe
Honor View 20 Firmware Subscribe
Mate 20 Subscribe
Mate 20 Firmware Subscribe
Mate 20 Pro Subscribe
Mate 20 Pro Firmware Subscribe
Mate 20 X Subscribe
Mate 20 X Firmware Subscribe
Mate 30 Subscribe
Mate 30 5g Subscribe
Mate 30 5g Firmware Subscribe
Mate 30 Firmware Subscribe
Mate 30 Pro Subscribe
Mate 30 Pro 5g Subscribe
Mate 30 Pro 5g Firmware Subscribe
Mate 30 Pro Firmware Subscribe
Nova 3 Firmware Subscribe
Nova Lite 3 Subscribe
Nova Lite 3 Firmware Subscribe
P20 Firmware Subscribe
P20 Pro Subscribe
P20 Pro Firmware Subscribe
P30 Firmware Subscribe
P30 Pro Subscribe
P30 Pro Firmware Subscribe
P Smart Subscribe
P Smart 2019 Subscribe
P Smart 2019 Firmware Subscribe
P Smart Firmware Subscribe
Y6 2019 Subscribe
Y6 2019 Firmware Subscribe
Y6 Pro 2019 Subscribe
Y6 Pro 2019 Firmware Subscribe
Y9 2019 Subscribe
Y9 2019 Firmware Subscribe
Advisories

No advisories yet.

Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: google_android

Published:

Updated: 2024-08-04T05:47:40.847Z

Reserved: 2019-10-17T00:00:00

Link: CVE-2020-0022

cve-icon Vulnrichment

Updated: 2024-08-04T05:47:40.847Z

cve-icon NVD

Status : Modified

Published: 2020-02-13T15:15:11.780

Modified: 2024-11-21T04:52:45.763

Link: CVE-2020-0022

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses