Buffer Overflow Vulnerability in P10 Plus and P10 Smartphones by Huawei
CVE-2017-2726

8.4HIGH

Key Information:

Vendor
McAfee
Vendor
CVE Published:
22 November 2017

Summary

The buffer overflow vulnerability found in Huawei's P10 Plus and P10 smartphones allows an attacker with root privileges to exploit the system. By tricking a user into installing a malicious application, the attacker can manipulate data, leading to a buffer overflow during system reboot. This results in repeated system reboots or potential arbitrary code execution, compromising the user's device security.

Affected Version(s)

P10 Plus,P10 Eariler than VKY-AL00C00B123 verisons,Earlier than VTR-AL00C00B123 versions

References

CVSS V3.1

Score:
8.4
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.