CVE-2019-5214

Severity CVSS v4.0:
Pending analysis
Type:
CWE-416 Use After Free
Publication date:
06/06/2019
Last modified:
10/06/2019

Description

There is a use after free vulnerability on certain driver component in Huawei Mate10 smartphones versions earlier than ALP-AL00B 9.0.0.167(C00E85R2P20T8). An attacker tricks the user into installing a malicious application, which make the software to reference memory after it has been freed. Successful exploit could cause a denial of service condition.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:huawei:mate_10_firmware:*:*:*:*:*:*:*:* alp-al00b_9.0.0.167\(c00e85r2p20t8\) (excluding)
cpe:2.3:h:huawei:mate_10:-:*:*:*:*:*:*:*