Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-q44f-95xp-jm2w

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 6.4

Описание

The TrustZone driver in Huawei P9 phones with software Versions earlier than EVA-AL10C00B352 and P9 Lite with software VNS-L21C185B130 and earlier versions and P8 Lite with software ALE-L02C636B150 and earlier versions has an input validation vulnerability, which allows attackers to read and write user-mode memory data anywhere in the TrustZone driver.

The TrustZone driver in Huawei P9 phones with software Versions earlier than EVA-AL10C00B352 and P9 Lite with software VNS-L21C185B130 and earlier versions and P8 Lite with software ALE-L02C636B150 and earlier versions has an input validation vulnerability, which allows attackers to read and write user-mode memory data anywhere in the TrustZone driver.

EPSS

Процентиль: 9%
0.00032
Низкий

6.4 Medium

CVSS3

Дефекты

CWE-20

Связанные уязвимости

CVSS3: 6.4
nvd
почти 9 лет назад

The TrustZone driver in Huawei P9 phones with software Versions earlier than EVA-AL10C00B352 and P9 Lite with software VNS-L21C185B130 and earlier versions and P8 Lite with software ALE-L02C636B150 and earlier versions has an input validation vulnerability, which allows attackers to read and write user-mode memory data anywhere in the TrustZone driver.

EPSS

Процентиль: 9%
0.00032
Низкий

6.4 Medium

CVSS3

Дефекты

CWE-20