CVE-2020-0404 in Google and Oracle Products
Published on September 17, 2020
In uvc_scan_chain_forward of uvc_driver.c, there is a possible linked list corruption due to an unusual root cause. This could lead to local escalation of privilege in the kernel with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-111893654References: Upstream kernel
Products Associated with CVE-2020-0404
You can be notified by email with stack.watch whenever vulnerabilities like CVE-2020-0404 are published in these products:
Exploit Probability
EPSS
0.18%
Percentile
39.93%
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.