CVE-2019-5305

Severity CVSS v4.0:
Pending analysis
Type:
CWE-415 Double Free
Publication date:
06/06/2019
Last modified:
10/06/2019

Description

The image processing module of some Huawei Mate 10 smartphones versions before ALP-L29 9.0.0.159(C185) has a memory double free vulnerability. An attacker tricks a user into installing a malicious application, and the application can call special API, which could trigger double free and cause a system crash.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:huawei:mate_10_firmware:*:*:*:*:*:*:*:* alp-l29_9.0.0.159\(c185\) (excluding)
cpe:2.3:h:huawei:mate_10:-:*:*:*:*:*:*:*