Lucene search

K
huaweiHuawei TechnologiesHUAWEI-SA-20190814-01-MOBILE
HistoryAug 14, 2019 - 12:00 a.m.

Two Denial of Service Vulnerabilities on Some Huawei Smartphones

2019-08-1400:00:00
Huawei Technologies
www.huawei.com
69

CVSS2

2.9

Attack Vector

ADJACENT_NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:A/AC:M/Au:N/C:N/I:N/A:P

CVSS3

5.3

Attack Vector

ADJACENT

Attack Complexity

HIGH

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H

EPSS

0.001

Percentile

25.7%

There are two denial of service vulnerabilities on some Huawei smartphones. An attacker may send specially crafted TD-SCDMA messages from a rogue base station to the affected devices. Due to insufficient input validation of two values when parsing the messages, successful exploit may cause an infinite loop and the device to reboot. (Vulnerability ID: HWPSIRT-2019-05093 and HWPSIRT-2019-05095)

The two vulnerabilities have been assigned two Common Vulnerabilities and Exposures (CVE) IDs: CVE-2019-5302 and CVE-2019-5303.

Huawei has released software updates to fix these vulnerabilities. This advisory is available at the following link:

http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20190814-01-mobile-en

Affected configurations

Vulners
Node
huaweialp-al00b_firmwareMatch8.0.0.153
OR
huaweialp-l09_firmwareMatch8.0.0.153
OR
huaweialp-l29_firmwareMatch8.0.0.145
OR
huaweibla-al00b_firmwareRange<9.1.0.333
OR
huaweibla-l29c_firmwareMatch8.0.0.146
OR
huaweibla-l29c_firmwareMatch8.0.0.158
OR
huaweibla-l29c_firmwareRange<9.1.0.302
OR
huaweiberkeley-al20_firmwareRange<9.1.0.333
OR
huaweiberkeley-l09_firmwareMatch8.0.0.172
OR
huaweiberkeley-l09_firmwareMatch8.0.0.172
OR
huaweiberkeley-l09_firmwareMatch8.0.0.173
OR
huaweicharlotte-l09c_firmwareMatch8.1.0.128a
OR
huaweicharlotte-l09c_firmwareMatch8.1.0.128a
OR
huaweicharlotte-l29c_firmwareMatch8.1.0.157
OR
huaweicharlotte-l29c_firmwareMatch8.1.0.158
OR
huaweicharlotte-l29c_firmwareMatch8.1.0.161
OR
huaweicharlotte-l29c_firmwareMatch8.1.0.162
OR
huaweicolumbia-al10b_firmwareRange<9.1.0.333
OR
huaweicolumbia-l29d_firmwareMatch8.1.0.146
OR
huaweicolumbia-l29d_firmwareMatch8.1.0.148
OR
huaweicolumbia-l29d_firmwareMatch8.1.0.151
OR
huaweicolumbia-l29d_firmwareMatch8.1.0.151
OR
huaweicornell-al00a_firmwareMatch8.2.0.151
OR
huaweicornell-l29a_firmwareMatch8.2.0.131
OR
huaweicornell-l29a_firmwareMatch8.2.0.132
OR
huaweicornell-l29a_firmwareMatch8.2.0.132
OR
huaweicornell-l29a_firmwareMatch8.2.0.133
OR
huaweiemily-l09c_firmwareMatch8.1.0.155
OR
huaweiemily-l09c_firmwareMatch8.1.0.156
OR
huaweiemily-l09c_firmwareMatch8.1.0.172
OR
huaweiemily-l29c_firmwareMatch8.1.0.156
OR
huaweiemily-l29c_firmwareMatch8.1.0.159
OR
huaweiemily-l29c_firmwareMatch8.1.0.166
OR
huaweiemily-l29c_firmwareRange<9.1.0.311
OR
huaweiever-l29b_firmwareMatch9.0.0.206
OR
huaweiever-l29b_firmwareMatch9.0.0.207
OR
huaweiever-l29b_firmwareMatch9.0.0.208
OR
huaweimate_20_firmwareRange<9.1.0.131
OR
huaweimate_20_firmwareRange<9.1.0.135
OR
huaweimate_20_pro_firmwareRange<9.1.0.310
OR
huaweimate_20_pro_firmwareRange<9.1.0.310
OR
huaweimate_20_pro_firmwareRange<9.1.0.310
OR
huaweimate_20_pro_firmwareRange<9.1.0.310
OR
huaweimate_20_pro_firmwareRange<9.1.0.310
OR
huaweimate_20_pro_firmwareRange<9.1.0.310
OR
huaweimate_20_pro_firmwareRange<9.1.0.310
OR
huaweimate_20_pro_firmwareRange<9.1.0.310
OR
huaweimate_20_pro_firmwareRange<9.1.0.311
OR
huaweimate_20_rs_firmwareRange<9.1.0.135
OR
huaweimate_20_x_firmwareRange<9.1.0.135
OR
huaweip_smart_2019_firmwareRange<9.1.0.264
OR
huaweip20_firmwareRange<9.1.0.333
OR
huaweip20_pro_firmwareRange<9.1.0.333
OR
huaweip30_firmwareRange<9.1.0.193
OR
huaweip30_pro_firmwareRange<9.1.0.186
OR
huaweiy9_2019_firmwareRange<9.1.0.220
OR
huaweinova_3_firmwareRange<9.1.0.333
OR
huaweinova_lite_3_firmwareRange<9.1.0.305
OR
huaweiharry-al00c_firmwareRange<9.1.0.217
OR
huaweiharry-al10b_firmwareRange<9.1.0.217
OR
huaweihonor_10_lite_firmwareRange<9.1.0.273
OR
huaweihonor_10_lite_firmwareRange<9.1.0.280
OR
huaweihonor_10_lite_firmwareRange<9.1.0.280
OR
huaweihonor_10_lite_firmwareRange<9.1.0.283
OR
huaweihonor_8x_firmwareRange<9.1.0.217
OR
huaweihonor_8x_firmwareRange<9.1.0.217
OR
huaweihonor_8x_firmwareRange<9.1.0.218
OR
huaweihonor_8x_firmwareRange<9.1.0.219
OR
huaweihonor_8x_firmwareRange<9.1.0.221
OR
huaweihonor_view_20_firmwareRange<9.1.0.235
OR
huaweihonor_view_20_firmwareRange<9.1.0.238
OR
huaweijackman-al00d_firmwareRange<9.1.0.213
OR
huaweijackman-l22_firmwareMatch8.2.0.156
OR
huaweivicky-al00c_firmwareRange<9.1.0.210
OR
huaweijohnson-al10c_firmwareRange<9.1.0.210
OR
huaweijohnson-tl00d_firmwareRange<9.1.0.223
OR
huaweijohnson-tl00f_firmwareRange<9.1.0.223
OR
huaweilaya-al00ep_firmwareRange<9.1.0.135
OR
huaweiparis-l21b_firmwareMatch8.2.0.130
OR
huaweiparis-l21meb_firmwareMatch8.2.0.135
OR
huaweiparis-l29b_firmwareMatch8.2.0.137
OR
huaweipotter-al00c_firmwareRange<9.1.0.217
OR
huaweipotter-al10a_firmwareRange<9.1.0.217
OR
huaweiprinceton-al10b_firmwareRange<9.1.0.233
OR
huaweiprinceton-al10d_firmwareRange<9.1.0.234
OR
huaweisydney-al00_firmwareMatch8.2.0.157
OR
huaweisydney-l21_firmwareMatch8.2.0.108
OR
huaweisydney-l21_firmwareMatch8.2.0.137
OR
huaweisydney-l21br_firmwareMatch8.2.0.130
OR
huaweisydney-l22_firmwareMatch8.2.0.138
OR
huaweisydney-l22br_firmwareMatch8.2.0.133
OR
huaweisydneym-al00_firmwareRange<9.1.0.228
OR
huaweisydneym-l01_firmwareMatch8.2.0.132
OR
huaweisydneym-l01_firmwareMatch8.2.0.133
OR
huaweisydneym-l01_firmwareMatch8.2.0.143
OR
huaweisydneym-l03_firmwareMatch8.2.0.135
OR
huaweisydneym-l21_firmwareMatch8.2.0.134
OR
huaweisydneym-l21_firmwareMatch8.2.0.144
OR
huaweisydneym-l22_firmwareMatch8.2.0.132
OR
huaweisydneym-l22_firmwareMatch8.2.0.132
OR
huaweisydneym-l22_firmwareMatch8.2.0.142
OR
huaweisydneym-l23_firmwareMatch8.2.0.134
OR
huaweitony-al00b_firmwareRange<10.0.0.187
OR
huaweitony-tl00b_firmwareRange<10.0.0.187
OR
huaweiyale-al00a_firmwareRange<9.1.0.152
OR
huaweiyale-l21a_firmwareMatch9.1.0.107
OR
huaweiyale-l21a_firmwareMatch9.1.0.107
OR
huaweiyale-l21a_firmwareMatch9.1.0.107
OR
huaweiyale-l21a_firmwareMatch9.1.0.107
OR
huaweiyale-l21a_firmwareMatch9.1.0.107
OR
huaweiharry-al00c_firmwareRange<9.1.0.217
OR
huaweijackman-l23_firmwareRange<9.1.0.213
OR
huaweipotter-al00c_firmwareRange<9.1.0.217
OR
huaweipotter-al10a_firmwareRange<9.1.0.217
OR
huaweiyale-al00a_firmwareRange<9.1.0.152
OR
huaweihonor_8x_firmwareRange<9.1.0.210
OR
huaweihonor_8x_firmwareRange<9.1.0.223
OR
huaweihonor_magic2_firmwareRange<10.0.0.187
OR
huaweihonor_v20_firmwareRange<9.1.0.233
OR
huaweihonor_v20_firmwareRange<9.1.0.234
VendorProductVersionCPE
huaweialp-al00b_firmware8.0.0.153cpe:2.3:o:huawei:alp-al00b_firmware:8.0.0.153:*:*:*:*:*:*:*
huaweialp-l09_firmware8.0.0.153cpe:2.3:o:huawei:alp-l09_firmware:8.0.0.153:*:*:*:*:*:*:*
huaweialp-l29_firmware8.0.0.145cpe:2.3:o:huawei:alp-l29_firmware:8.0.0.145:*:*:*:*:*:*:*
huaweibla-al00b_firmware*cpe:2.3:o:huawei:bla-al00b_firmware:*:*:*:*:*:*:*:*
huaweibla-l29c_firmware8.0.0.146cpe:2.3:o:huawei:bla-l29c_firmware:8.0.0.146:*:*:*:*:*:*:*
huaweibla-l29c_firmware8.0.0.158cpe:2.3:o:huawei:bla-l29c_firmware:8.0.0.158:*:*:*:*:*:*:*
huaweibla-l29c_firmware*cpe:2.3:o:huawei:bla-l29c_firmware:*:*:*:*:*:*:*:*
huaweiberkeley-al20_firmware*cpe:2.3:o:huawei:berkeley-al20_firmware:*:*:*:*:*:*:*:*
huaweiberkeley-l09_firmware8.0.0.172cpe:2.3:o:huawei:berkeley-l09_firmware:8.0.0.172:*:*:*:*:*:*:*
huaweiberkeley-l09_firmware8.0.0.173cpe:2.3:o:huawei:berkeley-l09_firmware:8.0.0.173:*:*:*:*:*:*:*
Rows per page:
1-10 of 871

CVSS2

2.9

Attack Vector

ADJACENT_NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:A/AC:M/Au:N/C:N/I:N/A:P

CVSS3

5.3

Attack Vector

ADJACENT

Attack Complexity

HIGH

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H

EPSS

0.001

Percentile

25.7%

Related for HUAWEI-SA-20190814-01-MOBILE