Описание
The TrustZone driver in Huawei P9 phones with software Versions earlier than EVA-AL10C00B352 and P9 Lite with software VNS-L21C185B130 and earlier versions and P8 Lite with software ALE-L02C636B150 and earlier versions has an input validation vulnerability, which allows attackers to cause the system to restart.
Ссылки
- Vendor Advisory
- Third Party AdvisoryVDB Entry
- Vendor Advisory
- Third Party AdvisoryVDB Entry
Уязвимые конфигурации
Конфигурация 1
Одновременно
cpe:2.3:o:huawei:p9_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:huawei:p9:-:*:*:*:*:*:*:*
Конфигурация 2Версия до vns-l21c185b130 (включая)
Одновременно
cpe:2.3:o:huawei:p9_lite_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:huawei:p9_lite:-:*:*:*:*:*:*:*
Конфигурация 3Версия до ale-l02c636b150 (включая)
Одновременно
cpe:2.3:o:huawei:p8_lite_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:huawei:p8_lite:-:*:*:*:*:*:*:*
EPSS
Процентиль: 7%
0.00027
Низкий
5 Medium
CVSS3
1.9 Low
CVSS2
Дефекты
CWE-20
Связанные уязвимости
CVSS3: 5
github
больше 3 лет назад
The TrustZone driver in Huawei P9 phones with software Versions earlier than EVA-AL10C00B352 and P9 Lite with software VNS-L21C185B130 and earlier versions and P8 Lite with software ALE-L02C636B150 and earlier versions has an input validation vulnerability, which allows attackers to cause the system to restart.
EPSS
Процентиль: 7%
0.00027
Низкий
5 Medium
CVSS3
1.9 Low
CVSS2
Дефекты
CWE-20