Vulnerability Name:

CVE-2020-16009 (CCN-190998)

Assigned:2020-11-02
Published:2020-11-02
Updated:2023-06-06
Summary:
CVSS v3 Severity:8.8 High (CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H)
7.9 High (Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:P/RL:O/RC:C)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): Required
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): High
Integrity (I): High
Availibility (A): High
6.5 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N)
5.9 Medium (CCN Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N/E:P/RL:O/RC:C)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): Required
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): None
Integrity (I): High
Availibility (A): None
CVSS v2 Severity:6.8 Medium (CVSS v2 Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Medium
Authentication (Au): None
Impact Metrics:Confidentiality (C): Partial
Integrity (I): Partial
Availibility (A): Partial
6.8 Medium (CCN CVSS v2 Vector: AV:N/AC:L/Au:S/C:N/I:C/A:N)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Athentication (Au): Single_Instance
Impact Metrics:Confidentiality (C): None
Integrity (I): Complete
Availibility (A): None
Vulnerability Consequences:Bypass Security
References:Source: MITRE
Type: CNA
CVE-2020-16009

Source: chrome-cve-admin@google.com
Type: Mailing List, Third Party Advisory
chrome-cve-admin@google.com

Source: chrome-cve-admin@google.com
Type: Mailing List, Third Party Advisory
chrome-cve-admin@google.com

Source: chrome-cve-admin@google.com
Type: Exploit, Third Party Advisory, VDB Entry
chrome-cve-admin@google.com

Source: CCN
Type: Google Chrome Releases Web site
Stable Channel Update for Desktop

Source: chrome-cve-admin@google.com
Type: Release Notes, Vendor Advisory
chrome-cve-admin@google.com

Source: chrome-cve-admin@google.com
Type: Permissions Required
chrome-cve-admin@google.com

Source: XF
Type: UNKNOWN
google-chrome-cve202016009-sec-bypass(190998)

Source: chrome-cve-admin@google.com
Type: Third Party Advisory
chrome-cve-admin@google.com

Source: chrome-cve-admin@google.com
Type: Third Party Advisory
chrome-cve-admin@google.com

Source: CCN
Type: Packet Storm Security [11-9-2020]
Chrome V8 Turbofan Type Confusion

Source: chrome-cve-admin@google.com
Type: Third Party Advisory
chrome-cve-admin@google.com

Source: CCN
Type: CYBERSECURITY & INFRASTRUCTURE SECURITY AGENCY
KNOWN EXPLOITED VULNERABILITIES CATALOG

Source: chrome-cve-admin@google.com
Type: Third Party Advisory
chrome-cve-admin@google.com

Source: CCN
Type: IBM Security Bulletin 6474871 (i2 Analyst's Notebook Premium)
IBM Analyst's Notebook Premium uses a component with known vulnerabilities (CVE-2020-16013, CVE-2020-16009, CVE-2020-15999)

Oval Definitions
Definition IDClassTitleLast Modified
oval:org.opensuse.security:def:202016009
V
CVE-2020-16009
2022-06-30
oval:org.opensuse.security:def:112066
P
chromedriver-93.0.4577.82-1.1 on GA media (Moderate)
2022-01-17
oval:org.opensuse.security:def:74683
P
Security update for ImageMagick (Moderate)
2021-12-10
oval:org.opensuse.security:def:64818
P
Security update for openssh (Important)
2021-12-06
oval:org.opensuse.security:def:64617
P
Security update for postgresql14 (Important)
2021-11-22
oval:org.opensuse.security:def:64796
P
Security update for binutils (Moderate)
2021-11-09
oval:org.opensuse.security:def:64592
P
Security update for krb5 (Moderate)
2021-10-18
oval:org.opensuse.security:def:105615
P
chromedriver-93.0.4577.82-1.1 on GA media (Moderate)
2021-10-01
oval:org.opensuse.security:def:63203
P
dpdk-18.11-2.43 on GA media (Moderate)
2021-09-21
oval:org.opensuse.security:def:64574
P
Security update for wireshark (Moderate)
2021-09-13
oval:org.opensuse.security:def:74658
P
Security update for go1.15 (Moderate)
2021-08-20
oval:org.opensuse.security:def:64552
P
Security update for webkit2gtk3 (Important)
2021-08-03
oval:org.opensuse.security:def:64710
P
Security update for gstreamer-plugins-bad (Important)
2021-06-10
oval:org.opensuse.security:def:64711
P
Security update for salt (Important)
2021-06-10
oval:org.opensuse.security:def:63543
P
kernel-default-extra-4.12.14-23.1 on GA media (Moderate)
2021-06-08
oval:org.opensuse.security:def:64689
P
Security update for graphviz (Critical)
2021-05-19
oval:org.opensuse.security:def:64688
P
Security update for ipvsadm (Low)
2021-05-13
oval:org.opensuse.security:def:64480
P
Security update for librsvg (Important)
2021-04-28
oval:org.opensuse.security:def:64464
P
Security update for ceph (Moderate)
2021-04-08
oval:org.opensuse.security:def:100264
P
(Important)
2021-04-01
oval:org.opensuse.security:def:64505
P
Security update for postgresql, postgresql13 (Moderate)
2021-01-20
oval:org.opensuse.security:def:63644
P
transfig-3.2.6a-4.6.1 on GA media (Moderate)
2020-12-03
oval:org.opensuse.security:def:63405
P
apache-commons-fileupload-1.4-1.63 on GA media (Moderate)
2020-12-03
oval:org.opensuse.security:def:64438
P
Security update for python-cryptography (Moderate)
2020-12-02
oval:org.opensuse.security:def:64336
P
libjasper4 on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:63769
P
Security update for libsolv, libzypp, zypper (Moderate)
2020-12-01
oval:org.opensuse.security:def:75010
P
Security update for claws-mail (Moderate)
2020-12-01
oval:org.opensuse.security:def:64977
P
Security update for xen (Important)
2020-12-01
oval:org.opensuse.security:def:64096
P
Security update for gcc10 (Moderate)
2020-12-01
oval:org.opensuse.security:def:75143
P
Security update for chromium (Important)
2020-12-01
oval:org.opensuse.security:def:63847
P
Security update for strongswan (Important)
2020-12-01
oval:org.opensuse.security:def:65089
P
Security update for python-pip (Important)
2020-12-01
oval:org.opensuse.security:def:64362
P
libopus0 on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:64230
P
cpio on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:63795
P
Security update for jasper (Moderate)
2020-12-01
oval:org.opensuse.security:def:75031
P
Security update for hylafax+ (Moderate)
2020-12-01
oval:org.opensuse.security:def:64122
P
Security update for mailman (Important)
2020-12-01
oval:org.opensuse.security:def:75164
P
Security update for opera (Important)
2020-12-01
oval:org.opensuse.security:def:74532
P
Security update of chromium (Low)
2020-12-01
oval:org.opensuse.security:def:64256
P
gc-devel on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:64223
P
c-ares-devel on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:64898
P
Security update for zziplib (Moderate)
2020-12-01
oval:org.opensuse.security:def:63994
P
Security update for dnsmasq (Moderate)
2020-12-01
oval:org.opensuse.security:def:74557
P
Security update for python (Moderate)
2020-12-01
oval:org.opensuse.security:def:64956
P
Security update for libbsd (Moderate)
2020-12-01
oval:org.opensuse.security:def:64245
P
elfutils on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:65068
P
Security update for u-boot (Important)
2020-12-01
oval:org.opensuse.security:def:64920
P
Security update for cpio (Moderate)
2020-12-01
oval:org.opensuse.security:def:93551
P
(Moderate)
2020-11-19
oval:org.opensuse.security:def:110307
P
Security update for opera (Important)
2020-11-17
oval:org.opensuse.security:def:110859
P
Security update for opera (Important)
2020-11-17
oval:org.opensuse.security:def:110282
P
Security update for chromium (Important)
2020-11-05
oval:org.opensuse.security:def:103074
P
Security update for chromium, gn (Important)
2020-11-05
oval:org.opensuse.security:def:96384
P
Security update for chromium, gn (Important)
2020-11-05
oval:org.opensuse.security:def:109731
P
Security update for chromium, gn (Important)
2020-11-05
oval:org.opensuse.security:def:100259
P
Security update for chromium (Important)
2020-11-05
oval:org.opensuse.security:def:110838
P
Security update for chromium (Important)
2020-11-05
oval:org.opensuse.security:def:93546
P
Security update for chromium (Important)
2020-11-05
BACK