Buffer Overflow Vulnerability in Huawei Honor 5C and Honor 6X Smartphones
CVE-2017-8210

7.8HIGH

Key Information:

Vendor
McAfee
Vendor
CVE Published:
22 November 2017

Summary

A buffer overflow vulnerability in the driver of Huawei's Honor 5C and Honor 6X smartphones arises from inadequate parameter validation. This flaw enables attackers to trick users into installing malicious applications, which can gain root privileges within the Android system. By sending specially crafted parameters to the smartphone's driver, these apps can potentially execute arbitrary code or cause the device to reboot unexpectedly, posing a significant risk to users' security and privacy.

Affected Version(s)

honor 5C,honor 6x Versions earlier than NEM-AL10C00B356,Versions earlier than Berlin-L21HNC432B360

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.