The boot loaders of P10 and P10 Plus Huawei mobile phones with software the versions before Victoria-L09AC605B162, the versions before Victoria-L29AC605B162, the versions before Vicky-L29AC605B162 have an out-of-bounds memory access vulnerability due to the lack of parameter validation. An attacker with the root privilege of an Android system may trick a user into installing a malicious APP. the APP can modify specific data to cause buffer overflow in the next system reboot, causing out-of-bounds memory read which can continuous system reboot.
References
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: huawei

Published: 2017-11-15T00:00:00

Updated: 2017-11-22T18:57:01

Reserved: 2017-04-25T00:00:00


Link: CVE-2017-8149

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2017-11-22T19:29:03.317

Modified: 2017-12-08T14:50:20.270


Link: CVE-2017-8149

JSON object: View

cve-icon Redhat Information

No data.

CWE