2023-04-24 12:24:31 +02:00
{
"id" : "CVE-2020-11836" ,
"sourceIdentifier" : "security@oppo.com" ,
"published" : "2021-02-06T00:15:12.357" ,
2024-12-08 03:06:42 +00:00
"lastModified" : "2024-11-21T04:58:43.767" ,
"vulnStatus" : "Modified" ,
2024-07-14 02:06:08 +00:00
"cveTags" : [ ] ,
2023-04-24 12:24:31 +02:00
"descriptions" : [
{
"lang" : "en" ,
"value" : "OPPO Android Phone with MTK chipset and Android 8.1/9/10/11 versions have an information leak vulnerability. The \u201cadb shell getprop ro.vendor.aee.enforcing\u201d or \u201cadb shell getprop ro.vendor.aee.enforcing\u201d return no."
} ,
{
"lang" : "es" ,
"value" : "Los Tel\u00e9fonos OPPO Android con chipset MTK y Android versiones 8.1/9/10/11, presentan una vulnerabilidad de filtrado de informaci\u00f3n. El \"adb shell getprop ro.vendor.aee.enforcing\" o \"adb shell getprop ro.vendor.aee.enforcing\" devuelven no"
}
] ,
"metrics" : {
"cvssMetricV31" : [
{
"source" : "nvd@nist.gov" ,
"type" : "Primary" ,
"cvssData" : {
"version" : "3.1" ,
"vectorString" : "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" ,
2024-12-08 03:06:42 +00:00
"baseScore" : 5.5 ,
"baseSeverity" : "MEDIUM" ,
2023-04-24 12:24:31 +02:00
"attackVector" : "LOCAL" ,
"attackComplexity" : "LOW" ,
"privilegesRequired" : "LOW" ,
"userInteraction" : "NONE" ,
"scope" : "UNCHANGED" ,
"confidentialityImpact" : "HIGH" ,
"integrityImpact" : "NONE" ,
2024-12-08 03:06:42 +00:00
"availabilityImpact" : "NONE"
2023-04-24 12:24:31 +02:00
} ,
"exploitabilityScore" : 1.8 ,
"impactScore" : 3.6
}
] ,
"cvssMetricV2" : [
{
"source" : "nvd@nist.gov" ,
"type" : "Primary" ,
"cvssData" : {
"version" : "2.0" ,
"vectorString" : "AV:L/AC:L/Au:N/C:P/I:N/A:N" ,
2024-12-08 03:06:42 +00:00
"baseScore" : 2.1 ,
2023-04-24 12:24:31 +02:00
"accessVector" : "LOCAL" ,
"accessComplexity" : "LOW" ,
"authentication" : "NONE" ,
"confidentialityImpact" : "PARTIAL" ,
"integrityImpact" : "NONE" ,
2024-12-08 03:06:42 +00:00
"availabilityImpact" : "NONE"
2023-04-24 12:24:31 +02:00
} ,
"baseSeverity" : "LOW" ,
"exploitabilityScore" : 3.9 ,
"impactScore" : 2.9 ,
"acInsufInfo" : false ,
"obtainAllPrivilege" : false ,
"obtainUserPrivilege" : false ,
"obtainOtherPrivilege" : false ,
"userInteractionRequired" : false
}
]
} ,
"weaknesses" : [
{
"source" : "nvd@nist.gov" ,
"type" : "Primary" ,
"description" : [
{
"lang" : "en" ,
"value" : "NVD-CWE-noinfo"
}
]
}
] ,
"configurations" : [
{
"operator" : "AND" ,
"nodes" : [
2024-12-08 03:06:42 +00:00
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:google:android:8.1:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "B06BE74B-83F4-41A3-8AD3-2E6248F7B0B2"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:google:android:9.0:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "8DFAAD08-36DA-4C95-8200-C29FE5B6B854"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:google:android:10.0:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "D558D965-FA70-4822-A770-419E73BA9ED3"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:google:android:11.0:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "109DD7FD-3A48-4C3D-8E1A-4433B98E1E64"
}
]
} ,
2023-04-24 12:24:31 +02:00
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:oppo:a12:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "EA25D8B5-7C87-4D46-89FB-0484C53A35E5"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:oppo:a15:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "A2D1B262-D765-492C-A92B-1D1E785CDF53"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:oppo:a15s:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "B5940AFE-1456-42D6-B3E4-D4190AB48D7A"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:oppo:a31:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "C74AB2EE-22EE-447F-AA23-C307105EAC24"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:oppo:a33:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "EF4B6A90-4560-4C31-B991-62F4D14AEF67"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:oppo:a5:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "BAA75235-A546-4D70-AF46-841947C1EF25"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:oppo:a52:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "AEFBA50C-F5A4-4CCC-A605-CE7799010A4F"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:oppo:a53:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "F36909FE-9A25-47D5-B13E-3FC109442228"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:oppo:a9:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "0CAD48EA-542C-4269-A227-B7E845834089"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:oppo:f15:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "2B766413-AB10-450D-9CA9-E5F1E9D5A0CE"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:oppo:f17:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "446E7955-7C38-4661-B363-DAFC26CDC42A"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:oppo:f17_pro:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "F726D286-B24C-42B7-946D-F1156119A1E4"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:oppo:reno_2:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "A50BCDF2-7D70-40D8-9B0C-69D73716087B"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:oppo:reno_2f:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "E65403B3-B678-4DEA-9571-9B5EED14672C"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:oppo:reno_2z:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "7287AC17-436D-47CD-ADC1-2B3946F2C09A"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:oppo:reno_3_pro:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "D0806D31-48C4-45EE-948A-D22B7AE6EB1F"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:oppo:reno_4_pro:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "F4C09FE7-62D2-42EA-8602-3C1D23D84D43"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:oppo:reno_5_pro_5g:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "20108C8D-EFD3-4C19-AE39-17190396DC05"
}
]
}
]
}
] ,
"references" : [
{
"url" : "https://security.oppo.com/en/noticeDetail?notice_only_key=NOTICE-1357213888449617920" ,
"source" : "security@oppo.com" ,
"tags" : [
"Vendor Advisory"
]
2024-12-08 03:06:42 +00:00
} ,
{
"url" : "https://security.oppo.com/en/noticeDetail?notice_only_key=NOTICE-1357213888449617920" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108" ,
"tags" : [
"Vendor Advisory"
]
2023-04-24 12:24:31 +02:00
}
]
}