PT-2020-15067 · Huawei · Huawei Mate 20+1

Ding Yicong

·

Published

2020-03-20

·

Updated

2020-03-24

·

CVE-2020-1795

CVSS v3.1

2.4

Low

VectorAV:P/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions HUAWEI Mate 20 versions earlier than 10.0.0.188(C00E74R3P8) HUAWEI Mate 30 Pro versions earlier than 10.0.0.203(C00E202R7P2)
Description The software does not properly restrict certain operations when the Digital Balance function is on, due to a logic error vulnerability. Successful exploitation could allow an attacker to bypass the Digital Balance limit after a series of operations.
Recommendations For HUAWEI Mate 20 versions earlier than 10.0.0.188(C00E74R3P8), update to version 10.0.0.188(C00E74R3P8) or later. For HUAWEI Mate 30 Pro versions earlier than 10.0.0.203(C00E202R7P2), update to version 10.0.0.203(C00E202R7P2) or later. As a temporary workaround, consider disabling the Digital Balance function until a patch is available.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2020-1795

Affected Products

Huawei Mate 20
Huawei Mate 30 Pro