PT-2019-17511 · Huawei · Huawei Mate 10
Published
2019-06-06
·
Updated
2019-06-10
·
CVE-2019-5219
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Huawei Mate10 smartphones versions earlier than 9.0.0.181(C00E87R2P20T8)
Description
The issue is related to a double free vulnerability on certain drivers. An attacker could trick a user into installing a malicious application, which exploits the vulnerability by making multiple processes operate the same resource simultaneously. This could lead to a denial of service condition.
Recommendations
For versions earlier than 9.0.0.181(C00E87R2P20T8), update to version 9.0.0.181(C00E87R2P20T8) or later to resolve the issue. As a temporary workaround, consider restricting the installation of applications from untrusted sources to minimize the risk of exploitation.
Fix
Double Free
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Huawei Mate 10