mirror of
https://github.com/CVEProject/cvelist.git
synced 2025-07-29 05:56:59 +00:00
62 lines
2.0 KiB
JSON
62 lines
2.0 KiB
JSON
![]() |
{
|
||
|
"data_type": "CVE",
|
||
|
"data_format": "MITRE",
|
||
|
"data_version": "4.0",
|
||
|
"CVE_data_meta": {
|
||
|
"ID": "CVE-2020-0017",
|
||
|
"ASSIGNER": "security@android.com",
|
||
|
"STATE": "PUBLIC"
|
||
|
},
|
||
|
"affects": {
|
||
|
"vendor": {
|
||
|
"vendor_data": [
|
||
|
{
|
||
|
"vendor_name": "n/a",
|
||
|
"product": {
|
||
|
"product_data": [
|
||
|
{
|
||
|
"product_name": "Android",
|
||
|
"version": {
|
||
|
"version_data": [
|
||
|
{
|
||
|
"version_value": "Android-8.0 Android-8.1 Android-9 Android-10"
|
||
|
}
|
||
|
]
|
||
|
}
|
||
|
}
|
||
|
]
|
||
|
}
|
||
|
}
|
||
|
]
|
||
|
}
|
||
|
},
|
||
|
"problemtype": {
|
||
|
"problemtype_data": [
|
||
|
{
|
||
|
"description": [
|
||
|
{
|
||
|
"lang": "eng",
|
||
|
"value": "Information disclosure"
|
||
|
}
|
||
|
]
|
||
|
}
|
||
|
]
|
||
|
},
|
||
|
"references": {
|
||
|
"reference_data": [
|
||
|
{
|
||
|
"refsource": "MISC",
|
||
|
"name": "https://source.android.com/security/bulletin/2020-02-01",
|
||
|
"url": "https://source.android.com/security/bulletin/2020-02-01"
|
||
|
}
|
||
|
]
|
||
|
},
|
||
|
"description": {
|
||
|
"description_data": [
|
||
|
{
|
||
|
"lang": "eng",
|
||
|
"value": "In multiple places, it was possible for the primary user\u2019s dictionary to be visible to and modifiable by secondary users. This could lead to local information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-8.0 Android-8.1 Android-9 Android-10Android ID: A-123232892"
|
||
|
}
|
||
|
]
|
||
|
}
|
||
|
}
|