CVE-2020-9123

Severity CVSS v4.0:
Pending analysis
Type:
CWE-787 Out-of-bounds Write
Publication date:
12/10/2020
Last modified:
26/10/2020

Description

HUAWEI P30 Pro versions earlier than 10.1.0.160(C00E160R2P8) and versions earlier than 10.1.0.160(C01E160R2P8) have a buffer overflow vulnerability. An attacker induces users to install malicious applications and sends specially constructed packets to affected devices after obtaining the root permission. Successful exploit may cause code execution.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:huawei:p30_pro_firmware:*:*:*:*:*:*:*:* 10.1.0.160\(c00e160r2p8\) (excluding)
cpe:2.3:h:huawei:p30_pro:-:*:*:*:*:*:*:*
cpe:2.3:o:huawei:p30_pro_firmware:*:*:*:*:*:*:*:* 10.1.0.160\(c01e160r2p8\) (excluding)
cpe:2.3:h:huawei:p30_pro:-:*:*:*:*:*:*:*