Severity
6.7MEDIUM
EPSS
0.0%
top 90.38%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedNov 13
Latest updateMay 24

Description

HUAWEI Mate 30 versions earlier than 10.1.0.159(C00E159R7P2) have a vulnerability of improper buffer operation. Due to improper restrictions, local attackers with high privileges can exploit the vulnerability to cause system heap overflow.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:HExploitability: 0.8 | Impact: 5.9

Affected Packages2 packages

NVDhuawei/mate_30_firmware< 10.1.0.159\(c00e159r7p2\)
CVEListV5huawei_mate_30Versions earlier than 10.1.0.159(C00E159R7P2)

🔴Vulnerability Details

2
GHSA
GHSA-vhh7-2w37-6fr7: HUAWEI Mate 30 versions earlier than 102022-05-24
CVEList
CVE-2020-9129: HUAWEI Mate 30 versions earlier than 102020-11-13
CVE-2020-9129 (MEDIUM CVSS 6.7) | HUAWEI Mate 30 versions earlier tha | cvebase.io