CVE-2017-8215
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
22/11/2017
Last modified:
20/04/2025
Description
Honor 8,Honor V8,Honor 9,Honor V9,Nova 2,Nova 2 Plus,P9,P10 Plus,Toronto Huawei smart phones with software of versions earlier than FRD-AL00C00B391, versions earlier than FRD-DL00C00B391, versions earlier than KNT-AL10C00B391, versions earlier than KNT-AL20C00B391, versions earlier than KNT-UL10C00B391, versions earlier than KNT-TL10C00B391, versions earlier than Stanford-AL00C00B175, versions earlier than Stanford-AL10C00B175, versions earlier than Stanford-TL00C01B175, versions earlier than Duke-AL20C00B191, versions earlier than Duke-TL30C01B191, versions earlier than Picasso-AL00C00B162, versions earlier than Picasso-TL00C01B162 , versions earlier than Barca-AL00C00B162, versions earlier than Barca-TL00C00B162, versions earlier than EVA-AL10C00B396SP03, versions earlier than EVA-CL00C92B396, versions earlier than EVA-DL00C17B396, versions earlier than EVA-TL00C01B396 , versions earlier than Vicky-AL00AC00B172, versions earlier than Toronto-AL00AC00B191, versions earlier than Toronto-TL10C01B191 have a permission control vulnerability. An attacker with the system privilege of a mobile can exploit this vulnerability to bypass the unlock code verification and unlock the mobile phone bootloader.
Impact
Base Score 3.x
6.20
Severity 3.x
MEDIUM
Base Score 2.0
7.20
Severity 2.0
HIGH
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:o:huawei:honor_8_firmware:*:*:*:*:*:*:*:* | frd-al00c00b391 (excluding) | |
| cpe:2.3:h:huawei:honor_8:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:huawei:honor_8_firmware:*:*:*:*:*:*:*:* | frd-dl00c00b391 (excluding) | |
| cpe:2.3:h:huawei:honor_8:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:huawei:honor_v8_firmware:*:*:*:*:*:*:*:* | knt-al10c00b391 (excluding) | |
| cpe:2.3:h:huawei:honor_v8:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:huawei:honor_v8_firmware:*:*:*:*:*:*:*:* | knt-al20c00b391 (excluding) | |
| cpe:2.3:h:huawei:honor_v8:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:huawei:honor_v8_firmware:*:*:*:*:*:*:*:* | knt-ul10c00b391 (excluding) | |
| cpe:2.3:h:huawei:honor_v8:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:huawei:honor_v8_firmware:*:*:*:*:*:*:*:* | knt-tl10c00b391 (excluding) | |
| cpe:2.3:h:huawei:honor_v8:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:huawei:honor_9_firmware:*:*:*:*:*:*:*:* | stanford-al00c00b175 (excluding) | |
| cpe:2.3:h:huawei:honor_9:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:huawei:honor_9_firmware:*:*:*:*:*:*:*:* | stanford-al10c00b175 (excluding) |
To consult the complete list of CPE names with products and versions, see this page



