HUAWEI Mate 20 versions earlier than 10.0.0.188(C00E74R3P8) have a buffer overflow vulnerability in the Bluetooth module. Due to insufficient input validation, an unauthenticated attacker may craft Bluetooth messages after successful paring, causing buffer overflow. Successful exploit may cause code execution.
References
Link | Resource |
---|---|
https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20201014-01-bluetooth-en | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
Information
Published : 2020-10-19 13:15
Updated : 2020-10-22 07:02
NVD link : CVE-2020-9113
Mitre link : CVE-2020-9113
JSON object : View
CWE
CWE-120
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
Products Affected
huawei
- mate_20
- mate_20_firmware