PT-2018-6494 · Huawei · Huawei P9

Yonggang Guo

·

Published

2018-03-20

·

Updated

2018-04-13

·

CVE-2017-17319

CVSS v2.0

7.1

High

VectorAV:N/AC:M/Au:N/C:C/I:N/A:N
Name of the Vulnerable Software and Affected Versions: Huawei P9 smartphones versions prior to EVA-AL10C00B399SP02
Description: The issue is related to an information disclosure problem where the software fails to properly protect certain resources, making them accessible through multithreading. An attacker can exploit this by tricking a user with root privileges into installing a crafted application, potentially leading to kernel information disclosure.
Recommendations: For versions prior to EVA-AL10C00B399SP02, update to a version that includes the necessary security patches to resolve the information disclosure issue.

Fix

Information Disclosure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2017-17319

Affected Products

Huawei P9