Huawei P8 Lite Firmware vulnerabilities
7 known vulnerabilities affecting huawei/p8_lite_firmware.
Total CVEs
7
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH5MEDIUM2
Vulnerabilities
Page 1 of 1
CVE-2017-2693HIGHCVSS 7.8≤ ale-l02c635b140≤ ale-l02c636b140+8 more2017-11-22
CVE-2017-2693 [HIGH] CWE-22 CVE-2017-2693: ALE-L02C635B140 and earlier versions,ALE-L02C636B140 and earlier versions,ALE-L21C10B150 and earlier
ALE-L02C635B140 and earlier versions,ALE-L02C636B140 and earlier versions,ALE-L21C10B150 and earlier versions,ALE-L21C185B200 and earlier versions,ALE-L21C432B214 and earlier versions,ALE-L21C464B150 and earlier versions,ALE-L21C636B200 and earlier versions,ALE-L23C605B190 and earlier versions,ALE-TL00C01B250 and earlier versions,ALE-UL00C00B250 and earl
nvd
CVE-2017-2729HIGHCVSS 7.8fixed in ale-l02c635b568fixed in ale-l21c10b541+5 more2017-11-22
CVE-2017-2729 [HIGH] CWE-119 CVE-2017-2729: The boot loaders in Honor 5A smart phones with software Versions earlier than CAM-TL00C01B193,Versio
The boot loaders in Honor 5A smart phones with software Versions earlier than CAM-TL00C01B193,Versions earlier than CAM-TL00HC00B193,Versions earlier than CAM-UL00C00B193 have a buffer overflow vulnerability. An attacker with the root privilege of an Android system may trick a user into installing a malicious APP. The APP can modify specific data to cau
nvd
CVE-2017-2692HIGHCVSS 7.8≤ ale-l02c635b140≤ ale-l02c636b140+8 more2017-11-22
CVE-2017-2692 [HIGH] CWE-77 CVE-2017-2692: The Keyguard application in ALE-L02C635B140 and earlier versions,ALE-L02C636B140 and earlier version
The Keyguard application in ALE-L02C635B140 and earlier versions,ALE-L02C636B140 and earlier versions,ALE-L21C10B150 and earlier versions,ALE-L21C185B200 and earlier versions,ALE-L21C432B214 and earlier versions,ALE-L21C464B150 and earlier versions,ALE-L21C636B200 and earlier versions,ALE-L23C605B190 and earlier versions,ALE-TL00C01B250 and earlier versi
nvd
CVE-2017-8150HIGHCVSS 7.8fixed in ale-l21c113b5662017-11-22
CVE-2017-8150 [HIGH] CWE-119 CVE-2017-8150: The boot loaders of P10 and P10 Plus Huawei mobile phones with software the versions before Victoria
The boot loaders of P10 and P10 Plus Huawei mobile phones with software the versions before Victoria-L09AC605B162, the versions before Victoria-L29AC605B162, the versions before Vicky-L29AC605B162 have an arbitrary memory write vulnerability due to the lack of parameter validation. An attacker with the root privilege of an Android system may trick a use
nvd
CVE-2016-8763HIGHCVSS 7.8≤ ale-l02c636b1502017-04-02
CVE-2016-8763 [HIGH] CWE-664 CVE-2016-8763: The TrustZone driver in Huawei P9 phones with software Versions earlier than EVA-AL10C00B352 and P9
The TrustZone driver in Huawei P9 phones with software Versions earlier than EVA-AL10C00B352 and P9 Lite with software VNS-L21C185B130 and earlier versions and P8 Lite with software ALE-L02C636B150 and earlier versions has an improper resource release vulnerability, which allows attackers to cause a system restart or privilege elevation.
nvd
CVE-2016-8762MEDIUMCVSS 5.0≤ ale-l02c636b1502017-04-02
CVE-2016-8762 [MEDIUM] CWE-20 CVE-2016-8762: The TrustZone driver in Huawei P9 phones with software Versions earlier than EVA-AL10C00B352 and P9
The TrustZone driver in Huawei P9 phones with software Versions earlier than EVA-AL10C00B352 and P9 Lite with software VNS-L21C185B130 and earlier versions and P8 Lite with software ALE-L02C636B150 and earlier versions has an input validation vulnerability, which allows attackers to cause the system to restart.
nvd
CVE-2016-8764MEDIUMCVSS 6.4≤ ale-l02c636b1502017-04-02
CVE-2016-8764 [MEDIUM] CWE-20 CVE-2016-8764: The TrustZone driver in Huawei P9 phones with software Versions earlier than EVA-AL10C00B352 and P9
The TrustZone driver in Huawei P9 phones with software Versions earlier than EVA-AL10C00B352 and P9 Lite with software VNS-L21C185B130 and earlier versions and P8 Lite with software ALE-L02C636B150 and earlier versions has an input validation vulnerability, which allows attackers to read and write user-mode memory data anywhere in the TrustZone driver.
nvd