Out-of-Bounds Read and Write Vulnerability in Huawei P30 Pro
CVE-2020-9108

5.5MEDIUM

Key Information:

Vendor
Huawei
Vendor
CVE Published:
12 October 2020

Summary

HUAWEI P30 Pro devices prior to version 10.1.0.160(C00E160R2P8) suffer from an out-of-bounds read and write vulnerability. An attacker can exploit this flaw by sending a specially crafted message to the affected product, which may not be adequately validated. This can lead to unintended process reboots, impacting the availability and security of the device. Users are urged to update their devices to the latest version to mitigate this risk.

Affected Version(s)

HUAWEI P30 Pro Versions earlier than 10.1.0.160(C00E160R2P8)

References

CVSS V3.1

Score:
5.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.