cbcvebase.

Huawei Technologies Co Ltd Mate 9 vulnerabilities

9 known vulnerabilities affecting huawei_technologies_co_ltd/mate_9.

Total CVEs
9
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH5MEDIUM3LOW1

Vulnerabilities

Page 1 of 1
CVE-2017-15311P3HIGHCVSS 8.8vbefore MHA-AL00B 8.0.0.334(C00)2017-12-22
CVE-2017-15311 [HIGH] CWE-119 CVE-2017-15311: The baseband modules of Mate 10, Mate 10 Pro, Mate 9, Mate 9 Pro Huawei smart phones with software b The baseband modules of Mate 10, Mate 10 Pro, Mate 9, Mate 9 Pro Huawei smart phones with software before ALP-AL00 8.0.0.120(SP2C00), before BLA-AL00 8.0.0.120(SP2C00), before MHA-AL00B 8.0.0.334(C00), and before LON-AL00B 8.0.0.334(C00) have a stack overflow vulnerability due to the lack of parameter validation. An attacker could send malicious packe
nvd
CVE-2017-15316P3HIGHCVSS 7.8vbefore MHA-AL00B 8.0.0.334(C00)2017-12-22
CVE-2017-15316 [HIGH] CWE-415 CVE-2017-15316: The GPU driver of Mate 9 Huawei smart phones with software before MHA-AL00B 8.0.0.334(C00) and Mate The GPU driver of Mate 9 Huawei smart phones with software before MHA-AL00B 8.0.0.334(C00) and Mate 9 Pro Huawei smart phones with software before LON-AL00B 8.0.0.334(C00) has a memory double free vulnerability. An attacker tricks a user into installing a malicious application, and the application can call special API, which triggers double free and ca
nvd
CVE-2017-2716P4HIGHCVSS 7.8vVersions earlier than MHA-AL00BC00B1732017-11-22
CVE-2017-2716 [HIGH] CWE-119 CVE-2017-2716: The camerafs driver in Mate 9 Versions earlier than MHA-AL00BC00B173 has buffer overflow vulnerabili The camerafs driver in Mate 9 Versions earlier than MHA-AL00BC00B173 has buffer overflow vulnerability. An attacker tricks a user into installing a malicious application which has the system privilege of the Android system and sends a specific parameter to the driver of the smart phone, causing a system crash or privilege escalation.
nvd
CVE-2018-7930P4MEDIUMCVSS 5.7vThe versions before MHA-L29B 8.0.0.366(C567)2018-04-11
CVE-2018-7930 [MEDIUM] CWE-200 CVE-2018-7930: The Near Field Communication (NFC) module in Mate 9 Huawei mobile phones with the versions before MH The Near Field Communication (NFC) module in Mate 9 Huawei mobile phones with the versions before MHA-L29B 8.0.0.366(C567) has an information leak vulnerability due to insufficient validation on data transfer requests. When an affected mobile phone sends files to an attacker's mobile phone using the NFC function, the attacker can obtain arbitrary file
nvd
CVE-2017-2706P4HIGHCVSS 7.1vMHA-AL00AC00B1252017-11-22
CVE-2017-2706 [HIGH] CWE-22 CVE-2017-2706: Mate 9 smartphones with software MHA-AL00AC00B125 have a directory traversal vulnerability in Push m Mate 9 smartphones with software MHA-AL00AC00B125 have a directory traversal vulnerability in Push module. Since the system does not verify the file name during decompression, system directories are traversed. It could be exploited to cause the attacker to replace files and impact the service.
nvd
CVE-2017-2702P4MEDIUMCVSS 6.8vVersions earlier before MHA-AL00C00B1702017-11-22
CVE-2017-2702 [MEDIUM] CVE-2017-2702: Phone Finder in versions earlier before MHA-AL00C00B170 can be bypass. An attacker can bypass the Ph Phone Finder in versions earlier before MHA-AL00C00B170 can be bypass. An attacker can bypass the Phone Finder by special steps and obtain the owner of the phone.
nvd
CVE-2017-2707P4HIGHCVSS 7.1vMHA-AL00AC00B1252017-11-22
CVE-2017-2707 [HIGH] CWE-494 CVE-2017-2707: Mate 9 smartphones with software MHA-AL00AC00B125 have a privilege escalation vulnerability in Push Mate 9 smartphones with software MHA-AL00AC00B125 have a privilege escalation vulnerability in Push module. An attacker tricks a user to save a rich media into message on the smart phone, which could be exploited to cause the attacker to delete message or fake user to send message.
nvd
CVE-2017-8165P4MEDIUMCVSS 5.5vVersions earlier than MHA-AL00BC00B2332018-03-05
CVE-2017-8165 [MEDIUM] CWE-200 CVE-2017-8165: Mate 9 Huawei smart phones with versions earlier than MHA-AL00BC00B233 have a sensitive information Mate 9 Huawei smart phones with versions earlier than MHA-AL00BC00B233 have a sensitive information leak vulnerability. An attacker can trick a user to install a malicious application to exploit this vulnerability. Successful exploitation may cause sensitive information leak.
nvd
CVE-2017-2701P4LOWCVSS 3.3vMHA-AL00AC00B1252017-11-22
CVE-2017-2701 [LOW] CWE-345 CVE-2017-2701: Mate 9 with software MHA-AL00AC00B125 has a denial of service (DoS) vulnerability. An attacker trick Mate 9 with software MHA-AL00AC00B125 has a denial of service (DoS) vulnerability. An attacker tricks a user into installing a malicious application. Since the system does not verify the broadcasting message from the application, it could be exploited to cause some functions of system unavailable.
nvd
Huawei Technologies Co Ltd Mate 9 vulnerabilities | cvebase