Huawei smart phones with earlier versions than ELLE-AL00B 9.1.0.222(C00E220R2P1) have a buffer overflow vulnerability. An attacker may intercept and tamper with the packet in the local area network (LAN) to exploit this vulnerability. Successful exploitation may cause the affected phone abnormal.
References
Link | Resource |
---|---|
https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20191218-02-smartphone-en | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
Information
Published : 2019-12-23 10:15
Updated : 2019-12-27 13:16
NVD link : CVE-2019-5276
Mitre link : CVE-2019-5276
JSON object : View
CWE
CWE-120
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
Products Affected
huawei
- elle-al00b_firmware
- elle-al00b