CVE-2018-7934

Severity CVSS v4.0:
Pending analysis
Type:
CWE-20 Input Validation
Publication date:
31/07/2018
Last modified:
04/10/2018

Description

Some Huawei mobile phone with the versions before BLA-L29 8.0.0.145(C432) have a denial of service (DoS) vulnerability because they do not adapt to specific screen gestures. An attacker may trick users into installing a malicious app. As a result, apps running on the frontend crash after the users make specific screen gestures.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:huawei:mate_10_pro_firmware:*:*:*:*:*:*:*:* bla-l29_8.0.0.145\(c432\) (excluding)
cpe:2.3:h:huawei:mate_10_pro:-:*:*:*:*:*:*:*