CVE-2017-17176

Severity
6.7MEDIUM
EPSS
0.0%
top 94.30%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedOct 17
Latest updateMay 13

Description

The hardware security module of Mate 9 and Mate 9 Pro Huawei smart phones with the versions earlier before MHA-AL00BC00B156, versions earlier before MHA-CL00BC00B156, versions earlier before MHA-DL00BC00B156, versions earlier before MHA-TL00BC00B156, versions earlier before LON-AL00BC00B156, versions earlier before LON-CL00BC00B156, versions earlier before LON-DL00BC00B156, versions earlier before LON-TL00BC00B156 has a arbitrary memory read/write vulnerability due to the input parameters valida

CVSS vector

CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:HExploitability: 0.8 | Impact: 5.9

Affected Packages2 packages

NVDhuawei/mate_9_firmware< mha-al00bc00b156+3
NVDhuawei/mate_9_pro_firmware< lon-al00bc00b156+3

🔴Vulnerability Details

2
GHSA
GHSA-2p9x-qhg2-q4vr: The hardware security module of Mate 9 and Mate 9 Pro Huawei smart phones with the versions earlier before MHA-AL00BC00B156, versions earlier before M2022-05-13
CVEList
CVE-2017-17176: The hardware security module of Mate 9 and Mate 9 Pro Huawei smart phones with the versions earlier before MHA-AL00BC00B156, versions earlier before M2018-10-17
CVE-2017-17176 (MEDIUM CVSS 6.7) | The hardware security module of Mat | cvebase.io