Out of Bounds Read Vulnerability in HUAWEI Smartphones
CVE-2020-1808

7.1HIGH

Summary

Certain HUAWEI smartphones, including models like Honor 20 and HUAWEI P30, are susceptible to an out-of-bounds read vulnerability. This flaw allows an attacker to trick users into installing specially crafted applications. If successfully exploited, this vulnerability may lead to information disclosure or abnormal service behavior, as it allows the software to read data beyond the intended buffer limits. Users are advised to ensure their devices run the updated software version to mitigate this risk.

Affected Version(s)

Honor 20;HONOR 20 PRO;Honor Magic2;HUAWEI Mate 20 X;HUAWEI P30;HUAWEI P30 Pro;Honor View 20 Versions earlier than 10.0.0.187(C00E60R4P11)

Honor 20;HONOR 20 PRO;Honor Magic2;HUAWEI Mate 20 X;HUAWEI P30;HUAWEI P30 Pro;Honor View 20 Versions earlier than 10.0.0.176(C00E60R2P11)

Honor 20;HONOR 20 PRO;Honor Magic2;HUAWEI Mate 20 X;HUAWEI P30;HUAWEI P30 Pro;Honor View 20 9.1.0.135(C00E133R2P1)

References

CVSS V3.1

Score:
7.1
Severity:
HIGH
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.