CVE-2020-0022
Summary
| CVE | CVE-2020-0022 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2020-02-13 15:15:00 UTC |
| Updated | 2024-02-02 13:50:00 UTC |
| Description | In reassemble_and_dispatch of packet_fragmenter.cc, there is possible out of bounds write due to an incorrect bounds calculation. This could lead to remote code execution over Bluetooth with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.0 Android-8.1 Android-9 Android-10Android ID: A-143894715 |
Risk And Classification
Problem Types: CWE-682
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Operating System | Android | 10.0 | All | All | All | |
| Operating System | Android | 8.0 | All | All | All | |
| Operating System | Android | 8.1 | All | All | All | |
| Operating System | Android | 9.0 | All | All | All | |
| Operating System | Android | 10.0 | All | All | All | |
| Operating System | Android | 8.0 | All | All | All | |
| Operating System | Android | 8.1 | All | All | All | |
| Operating System | Android | 9.0 | All | All | All | |
| Hardware | Huawei | Honor 8a | - | All | All | All |
| Operating System | Huawei | Honor 8a Firmware | All | All | All | All |
| Hardware | Huawei | Honor 8x | - | All | All | All |
| Operating System | Huawei | Honor 8x Firmware | All | All | All | All |
| Hardware | Huawei | Honor View 20 | - | All | All | All |
| Operating System | Huawei | Honor View 20 Firmware | All | All | All | All |
| Hardware | Huawei | Mate 20 | - | All | All | All |
| Operating System | Huawei | Mate 20 Firmware | All | All | All | All |
| Hardware | Huawei | Mate 20 Pro | - | All | All | All |
| Operating System | Huawei | Mate 20 Pro Firmware | All | All | All | All |
| Hardware | Huawei | Mate 20 X | - | All | All | All |
| Operating System | Huawei | Mate 20 X Firmware | All | All | All | All |
| Hardware | Huawei | Mate 30 | - | All | All | All |
| Hardware | Huawei | Mate 30 5g | - | All | All | All |
| Operating System | Huawei | Mate 30 5g Firmware | All | All | All | All |
| Operating System | Huawei | Mate 30 Firmware | All | All | All | All |
| Hardware | Huawei | Mate 30 Pro | - | All | All | All |
| Hardware | Huawei | Mate 30 Pro 5g | - | All | All | All |
| Operating System | Huawei | Mate 30 Pro 5g Firmware | All | All | All | All |
| Operating System | Huawei | Mate 30 Pro Firmware | All | All | All | All |
| Hardware | Huawei | Nova 3 | - | All | All | All |
| Operating System | Huawei | Nova 3 Firmware | All | All | All | All |
| Hardware | Huawei | Nova Lite 3 | - | All | All | All |
| Operating System | Huawei | Nova Lite 3 Firmware | All | All | All | All |
| Hardware | Huawei | P20 | - | All | All | All |
| Operating System | Huawei | P20 Firmware | All | All | All | All |
| Hardware | Huawei | P20 Pro | - | All | All | All |
| Operating System | Huawei | P20 Pro Firmware | All | All | All | All |
| Hardware | Huawei | P30 | - | All | All | All |
| Operating System | Huawei | P30 Firmware | All | All | All | All |
| Hardware | Huawei | P30 Pro | - | All | All | All |
| Operating System | Huawei | P30 Pro Firmware | All | All | All | All |
| Hardware | Huawei | P Smart | - | All | All | All |
| Hardware | Huawei | P Smart 2019 | - | All | All | All |
| Operating System | Huawei | P Smart 2019 Firmware | All | All | All | All |
| Operating System | Huawei | P Smart Firmware | All | All | All | All |
| Hardware | Huawei | Y6 2019 | - | All | All | All |
| Operating System | Huawei | Y6 2019 Firmware | All | All | All | All |
| Hardware | Huawei | Y6 Pro 2019 | - | All | All | All |
| Operating System | Huawei | Y6 Pro 2019 Firmware | All | All | All | All |
| Hardware | Huawei | Y9 2019 | - | All | All | All |
| Operating System | Huawei | Y9 2019 Firmware | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Security Advisory - Integer Overflow Vulnerability in Android affects Several Huawei Smartphones | CONFIRM | www.huawei.com | |
| Full Disclosure: Re: [FD] Critical Bluetooth Vulnerability in Android (CVE-2020-0022) – BlueFrag | FULLDISC | seclists.org | Exploit, Mailing List, Third Party Advisory |
| Android Security Bulletin—February 2020 | Android Open Source Project | MISC | source.android.com | Patch, Vendor Advisory |
| Android Bluetooth Remote Denial Of Service ≈ Packet Storm | MISC | packetstormsecurity.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.