Описание
Some Huawei smart phones with versions earlier than Harry-AL00C 9.1.0.206(C00E205R3P1) have a null pointer dereference vulnerability. An attacker crafts specific packets and sends to the affected product to exploit this vulnerability. Successful exploitation may cause the affected phone abnormal.
Ссылки
- Vendor Advisory
- Third Party Advisory
- Vendor Advisory
- Third Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до harry-al00c_9.1.0.206\(c00e205r3p1\) (исключая)
Одновременно
cpe:2.3:o:huawei:hg655m_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:huawei:hg655m:-:*:*:*:*:*:*:*
Конфигурация 2Версия до v100r001c02b023 (исключая)
Одновременно
cpe:2.3:o:huawei:hg655m_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:huawei:hg655m:-:*:*:*:*:*:*:*
EPSS
Процентиль: 19%
0.00062
Низкий
8.8 High
CVSS3
5.8 Medium
CVSS2
Дефекты
CWE-476
Связанные уязвимости
github
больше 3 лет назад
Some Huawei smart phones with versions earlier than Harry-AL00C 9.1.0.206(C00E205R3P1) have a null pointer dereference vulnerability. An attacker crafts specific packets and sends to the affected product to exploit this vulnerability. Successful exploitation may cause the affected phone abnormal.
EPSS
Процентиль: 19%
0.00062
Низкий
8.8 High
CVSS3
5.8 Medium
CVSS2
Дефекты
CWE-476