Improper Resource Management Vulnerability in Huawei Smartphones
CVE-2017-17327

5.5MEDIUM

Key Information:

Vendor
McAfee
Status
Vendor
CVE Published:
9 March 2018

Summary

Huawei smartphones running software version MHA-AL00AC00B125 are susceptible to an improper resource management flaw. This vulnerability arises during the device registration process, where the software fails to handle resources adequately. An attacker could exploit this weakness by tricking a user with root privileges into installing a malicious application. If successfully executed, this could lead to a disruption of services, making certain functionalities unavailable.

Affected Version(s)

MHA-AL00A MHA-AL00AC00B125

References

CVSS V3.1

Score:
5.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.