Buffer Overflow Vulnerability in Huawei Honor 5C and 6X Smartphones
CVE-2017-8209
7.8HIGH
Summary
The Huawei Honor 5C and 6X smartphones exhibit a buffer overflow vulnerability due to insufficient parameter validation in their drivers. An attacker can exploit this vulnerability by tricking an unsuspecting user into installing a malicious application that can gain root privileges on the Android system. This compromised app can then send specially crafted parameters to the smartphone's driver, potentially leading to unexpected system reboots or execution of arbitrary code, posing significant risks to users’ data security and device integrity.
Affected Version(s)
honor 5C,honor 6x Versions earlier than NEM-AL10C00B356,Versions earlier than Berlin-L21HNC432B360
References
CVSS V3.1
Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved