Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2020-1839

Опубликовано: 06 июл. 2020
Источник: nvd
CVSS3: 6.3
CVSS2: 3.7
EPSS Низкий

Описание

HUAWEI Mate 30 with versions earlier than 10.1.0.150(C00E136R5P3) have a race condition vulnerability. There is a timing window exists in which certain pointer members can be modified by another process that is operating concurrently, an attacker should trick the user into running a crafted application with high privilege, successful exploit could cause code execution.

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:o:huawei:mate_30_firmware:*:*:*:*:*:*:*:*
Версия до 10.1.0.150\(c00e136r5p3\) (исключая)
cpe:2.3:h:huawei:mate_30:-:*:*:*:*:*:*:*

EPSS

Процентиль: 5%
0.00021
Низкий

6.3 Medium

CVSS3

3.7 Low

CVSS2

Дефекты

CWE-362

Связанные уязвимости

github
больше 3 лет назад

HUAWEI Mate 30 with versions earlier than 10.1.0.150(C00E136R5P3) have a race condition vulnerability. There is a timing window exists in which certain pointer members can be modified by another process that is operating concurrently, an attacker should trick the user into running a crafted application with high privilege, successful exploit could cause code execution.

EPSS

Процентиль: 5%
0.00021
Низкий

6.3 Medium

CVSS3

3.7 Low

CVSS2

Дефекты

CWE-362