PT-2016-3948 · Huawei+1 · Huawei P8+2

Chen Gengjia

+1

·

Publicado

2016-04-07

·

Atualizado

2017-03-28

·

CVE-2015-8679

CVSS v2.0

7.1

Alta

VetorAV:N/AC:M/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Huawei P8 smartphones with software versions prior to GRA-TL00C01B230 Huawei P8 smartphones with software versions prior to GRA-CL00C92B230 Huawei P8 smartphones with software versions prior to GRA-CL10C92B230 Huawei P8 smartphones with software versions prior to GRA-UL00C00B230 Huawei P8 smartphones with software versions prior to GRA-UL10C00B230 Huawei Mate S smartphones with software versions prior to CRR-TL00C01B160SP01 Huawei Mate S smartphones with software versions prior to CRR-UL00C00B160 Huawei Mate S smartphones with software versions prior to CRR-CL00C92B161
Description The issue allows attackers to cause a denial of service, resulting in a system crash, via a crafted application. This application triggers an invalid memory access, exploiting the Maxim smartpa dev driver in affected Huawei smartphones.
Recommendations For Huawei P8 smartphones with software versions prior to GRA-TL00C01B230, update to version GRA-TL00C01B230 or later. For Huawei P8 smartphones with software versions prior to GRA-CL00C92B230, update to version GRA-CL00C92B230 or later. For Huawei P8 smartphones with software versions prior to GRA-CL10C92B230, update to version GRA-CL10C92B230 or later. For Huawei P8 smartphones with software versions prior to GRA-UL00C00B230, update to version GRA-UL00C00B230 or later. For Huawei P8 smartphones with software versions prior to GRA-UL10C00B230, update to version GRA-UL10C00B230 or later. For Huawei Mate S smartphones with software versions prior to CRR-TL00C01B160SP01, update to version CRR-TL00C01B160SP01 or later. For Huawei Mate S smartphones with software versions prior to CRR-UL00C00B160, update to version CRR-UL00C00B160 or later. For Huawei Mate S smartphones with software versions prior to CRR-CL00C92B161, update to version CRR-CL00C92B161 or later.

Correção

Improper Access Control

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2015-8679

Produtos afetados

Huawei Mate S
Huawei P8
Maxim Smartpa Dev Driver