CVE-2019-5235

Severity CVSS v4.0:
Pending analysis
Type:
CWE-476 NULL Pointer Dereference
Publication date:
14/12/2019
Last modified:
23/12/2019

Description

Some Huawei smart phones have a null pointer dereference vulnerability. An attacker crafts specific packets and sends to the affected product to exploit this vulnerability. Successful exploitation may cause the affected phone to be abnormal.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:huawei:alp-al00b_firmware:8.0.0.153\(c00\):*:*:*:*:*:*:*
cpe:2.3:h:huawei:alp-al00b:-:*:*:*:*:*:*:*
cpe:2.3:o:huawei:alp-tl00b_firmware:8.0.0.129\(sp2c01\):*:*:*:*:*:*:*
cpe:2.3:h:huawei:alp-tl00b:-:*:*:*:*:*:*:*
cpe:2.3:o:huawei:bla-al00b_firmware:8.0.0.129\(sp2c786\):*:*:*:*:*:*:*
cpe:2.3:o:huawei:bla-al00b_firmware:8.0.0.153\(c00\):*:*:*:*:*:*:*
cpe:2.3:h:huawei:bla-al00b:-:*:*:*:*:*:*:*
cpe:2.3:o:huawei:bla-tl00b_firmware:8.0.0.129\(sp2c01\):*:*:*:*:*:*:*
cpe:2.3:h:huawei:bla-tl00b:-:*:*:*:*:*:*:*
cpe:2.3:o:huawei:charlotte-al00a_firmware:8.1.0.176\(c00\):*:*:*:*:*:*:*
cpe:2.3:h:huawei:charlotte-al00a:-:*:*:*:*:*:*:*
cpe:2.3:o:huawei:charlotte-tl00b_firmware:8.1.0.176\(c01\):*:*:*:*:*:*:*
cpe:2.3:h:huawei:charlotte-tl00b:-:*:*:*:*:*:*:*
cpe:2.3:o:huawei:columbia-al10b_firmware:8.1.0.163\(c00\):*:*:*:*:*:*:*
cpe:2.3:h:huawei:columbia-al10b:-:*:*:*:*:*:*:*