Description
In reassemble_and_dispatch of packet_fragmenter.cc, there is possible out of bounds write due to an incorrect bounds calculation. This could lead to remote code execution over Bluetooth with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.0 Android-8.1 Android-9 Android-10Android ID: A-143894715
Published: 2020-02-13
Score: 8.8 High
EPSS: 6.9% Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Mon, 23 Feb 2026 18:15:00 +0000

Type Values Removed Values Added
CPEs cpe:2.3:o:google:android:10.0:-:*:*:*:*:*:*
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'poc', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Subscriptions

Google Android
Huawei Honor 8a Honor 8a Firmware Honor 8x Honor 8x Firmware Honor View 20 Honor View 20 Firmware Mate 20 Mate 20 Firmware Mate 20 Pro Mate 20 Pro Firmware Mate 20 X Mate 20 X Firmware Mate 30 Mate 30 5g Mate 30 5g Firmware Mate 30 Firmware Mate 30 Pro Mate 30 Pro 5g Mate 30 Pro 5g Firmware Mate 30 Pro Firmware Nova 3 Nova 3 Firmware Nova Lite 3 Nova Lite 3 Firmware P20 P20 Firmware P20 Pro P20 Pro Firmware P30 P30 Firmware P30 Pro P30 Pro Firmware P Smart P Smart 2019 P Smart 2019 Firmware P Smart Firmware Y6 2019 Y6 2019 Firmware Y6 Pro 2019 Y6 Pro 2019 Firmware Y9 2019 Y9 2019 Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: google_android

Published:

Updated: 2024-08-04T05:47:40.847Z

Reserved: 2019-10-17T00:00:00.000Z

Link: CVE-2020-0022

cve-icon Vulnrichment

Updated: 2024-08-04T05:47:40.847Z

cve-icon NVD

Status : Modified

Published: 2020-02-13T15:15:11.780

Modified: 2024-11-21T04:52:45.763

Link: CVE-2020-0022

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses