cbcvebase.
CVE-2017-2729
published 2017-11-22

CVE-2017-2729: The boot loaders in Honor 5A smart phones with software Versions earlier than CAM-TL00C01B193,Versions earlier than CAM-TL00HC00B193,Versions earlier than…

high7.8CVSS 3.0
AVLACLPRNUIRSUCHIHAH
The boot loaders in Honor 5A smart phones with software Versions earlier than CAM-TL00C01B193,Versions earlier than CAM-TL00HC00B193,Versions earlier than CAM-UL00C00B193 have a buffer overflow vulnerability. An attacker with the root privilege of an Android system may trick a user into installing a malicious APP. The APP can modify specific data to cause buffer overflow in the next system reboot, causing continuous system reboot or arbitrary code execution.

Affected

11 ranges
VendorProductVersion rangeFixed in
huaweihonor_5a_firmware< cam-tl00c01b193cam-tl00c01b193
huaweihonor_5a_firmware< cam-tl00hc00b193cam-tl00hc00b193
huaweihonor_5a_firmware< cam-ul00c00b193cam-ul00c00b193
huaweip8_lite_firmware< ale-l02c635b568ale-l02c635b568
huaweip8_lite_firmware< ale-l21c10b541ale-l21c10b541
huaweip8_lite_firmware< ale-l21c185b568ale-l21c185b568
huaweip8_lite_firmware< ale-l21c432b596ale-l21c432b596
huaweip8_lite_firmware< ale-l21c464b595ale-l21c464b595
huaweip8_lite_firmware< ale-l21c636b568ale-l21c636b568
huaweip8_lite_firmware< ale-l23c605b535ale-l23c605b535
huawei_technologies_co_ltdhonor_5a