CVE-2015-8682

Severity CVSS v4.0:
Pending analysis
Type:
CWE-20 Input Validation
Publication date:
13/04/2016
Last modified:
12/04/2025

Description

The Video0 driver in Huawei P8 smartphones with software GRA-UL00 before GRA-UL00C00B350, GRA-UL10 before GRA-UL10C00B350, GRA-TL00 before GRA-TL00C01B350, GRA-CL00 before GRA-CL00C92B350, and GRA-CL10 before GRA-CL10C92B350 and Mate S smartphones with software CRR-TL00 before CRR-TL00C01B160SP01, CRR-UL00 before CRR-UL00C00B160, and CRR-CL00 before CRR-CL00C92B161 allows attackers to obtain sensitive information from stack memory or cause a denial of service (system crash) via a crafted application, which triggers an invalid memory access.

Vulnerable products and versions

CPE From Up to
cpe:2.3:h:huawei:mate_s:-:*:*:*:*:*:*:*
cpe:2.3:a:huawei:mate_s_firmware:*:*:*:*:*:*:*:* crr-cl00c92b153 (including)
cpe:2.3:a:huawei:mate_s_firmware:*:*:*:*:*:*:*:* crr-tl00c01b153sp01 (including)
cpe:2.3:a:huawei:mate_s_firmware:*:*:*:*:*:*:*:* crr-ul00c00b153 (including)
cpe:2.3:h:huawei:p8:-:*:*:*:*:*:*:*
cpe:2.3:a:huawei:p8_firmware:*:*:*:*:*:*:*:* gra-cl00c92b230 (including)
cpe:2.3:a:huawei:p8_firmware:*:*:*:*:*:*:*:* gra-cl10c92b230 (including)
cpe:2.3:a:huawei:p8_firmware:*:*:*:*:*:*:*:* gra-tl00c01b230 (including)
cpe:2.3:a:huawei:p8_firmware:*:*:*:*:*:*:*:* gra-ul00c00b230 (including)
cpe:2.3:a:huawei:p8_firmware:*:*:*:*:*:*:*:* gra-ul10c00b230 (including)