CVSS2
Attack Vector
NETWORK
Attack Complexity
MEDIUM
Authentication
NONE
Confidentiality Impact
COMPLETE
Integrity Impact
COMPLETE
Availability Impact
COMPLETE
AV:N/AC:M/Au:N/C:C/I:C/A:C
CVSS3
Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
REQUIRED
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
AI Score
Confidence
High
EPSS
Percentile
59.0%
Heap-based buffer overflow in the HIFI driver in Huawei Mate 7 phones with software MT7-UL00 before MT7-UL00C17B354, MT7-TL10 before MT7-TL10C00B354, MT7-TL00 before MT7-TL00C01B354, and MT7-CL00 before MT7-CL00C92B354 and P8 phones with software GRA-TL00 before GRA-TL00C01B220SP01, GRA-CL00 before GRA-CL00C92B220, GRA-CL10 before GRA-CL10C92B220, GRA-UL00 before GRA-UL00C00B220, and GRA-UL10 before GRA-UL10C00B220 allows attackers to cause a denial of service (reboot) or execute arbitrary code via a crafted application.
Vendor | Product | Version | CPE |
---|---|---|---|
huawei | p8_firmware | gra-cl10 | cpe:2.3:o:huawei:p8_firmware:gra-cl10:*:*:*:*:*:*:* |
huawei | p8_firmware | gra-cl100 | cpe:2.3:o:huawei:p8_firmware:gra-cl100:*:*:*:*:*:*:* |
huawei | p8_firmware | gra-tl00 | cpe:2.3:o:huawei:p8_firmware:gra-tl00:*:*:*:*:*:*:* |
huawei | p8_firmware | gra-ul10 | cpe:2.3:o:huawei:p8_firmware:gra-ul10:*:*:*:*:*:*:* |
huawei | p8_firmware | gra-ul100 | cpe:2.3:o:huawei:p8_firmware:gra-ul100:*:*:*:*:*:*:* |
huawei | p8 | - | cpe:2.3:h:huawei:p8:-:*:*:*:*:*:*:* |
huawei | mate_7_firmware | mt7-cl00 | cpe:2.3:o:huawei:mate_7_firmware:mt7-cl00:*:*:*:*:*:*:* |
huawei | mate_7_firmware | mt7-tl00 | cpe:2.3:o:huawei:mate_7_firmware:mt7-tl00:*:*:*:*:*:*:* |
huawei | mate_7_firmware | mt7-tl10 | cpe:2.3:o:huawei:mate_7_firmware:mt7-tl10:*:*:*:*:*:*:* |
huawei | mate_7_firmware | mt7-ul00 | cpe:2.3:o:huawei:mate_7_firmware:mt7-ul00:*:*:*:*:*:*:* |
CVSS2
Attack Vector
NETWORK
Attack Complexity
MEDIUM
Authentication
NONE
Confidentiality Impact
COMPLETE
Integrity Impact
COMPLETE
Availability Impact
COMPLETE
AV:N/AC:M/Au:N/C:C/I:C/A:C
CVSS3
Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
REQUIRED
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
AI Score
Confidence
High
EPSS
Percentile
59.0%