UBUNTU-CVE-2020-0336

Source
https://ubuntu.com/security/CVE-2020-0336
Import Source
https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2020/UBUNTU-CVE-2020-0336.json
JSON Data
https://api.osv.dev/v1/vulns/UBUNTU-CVE-2020-0336
Upstream
  • CVE-2020-0336
Published
2020-09-17T21:15:00Z
Modified
2025-10-24T04:48:13Z
Severity
  • 6.7 (Medium) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
  • Ubuntu - medium
Summary
[none]
Details

In SurfaceFlinger, there is possible memory corruption due to type confusion. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-153467444

References

Affected packages

Ubuntu:16.04:LTS / android

Package

Name
android
Purl
pkg:deb/ubuntu/android@20160330-0939-0ubuntu1?arch=source&distro=xenial

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

Other
20150818-1500-0ubuntu2
20150818-1500-0ubuntu3
20160307-0742-0ubuntu3
20160330-0939-0ubuntu1

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "20160330-0939-0ubuntu1",
            "binary_name": "android"
        },
        {
            "binary_version": "20160330-0939-0ubuntu1",
            "binary_name": "android-copyright"
        },
        {
            "binary_version": "20160330-0939-0ubuntu1",
            "binary_name": "android-emulator"
        },
        {
            "binary_version": "20160330-0939-0ubuntu1",
            "binary_name": "ubuntu-emulator-images"
        },
        {
            "binary_version": "20160330-0939-0ubuntu1",
            "binary_name": "ubuntu-emulator-runtime"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2020/UBUNTU-CVE-2020-0336.json"