CVE-2017-15330

Severity CVSS v4.0:
Pending analysis
Type:
CWE-415 Double Free
Publication date:
15/02/2018
Last modified:
07/03/2018

Description

The Flp Driver in some Huawei smartphones of the software Vicky-AL00AC00B124D, Vicky-AL00AC00B157D, Vicky-AL00AC00B167 has a double free vulnerability. An attacker can trick a user to install a malicious application which has a high privilege to exploit this vulnerability. Successful exploitation may cause denial of service (DoS) attack.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:huawei:vicky-al00a_firmware:vicky-al00ac00b124d:*:*:*:*:*:*:*
cpe:2.3:o:huawei:vicky-al00a_firmware:vicky-al00ac00b157d:*:*:*:*:*:*:*
cpe:2.3:o:huawei:vicky-al00a_firmware:vicky-al00ac00b167:*:*:*:*:*:*:*
cpe:2.3:h:huawei:vicky-al00a:-:*:*:*:*:*:*:*