Vulnerability Description
Some Huawei smartphones with software of BGO-L03C158B003CUSTC158D001 and BGO-L03C331B009CUSTC331D001 have a DoS vulnerability due to insufficient input validation. An attacker could exploit this vulnerability by sending specially crafted NFC messages to the target device. Successful exploit could make a service crash.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Huawei | Baggio-L03A Firmware | bgo-l03c158b003custc158d001 |
| Huawei | Baggio-L03A | - |
Related Weaknesses (CWE)
References
- http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20171108-01-nfc-enVendor Advisory
- http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20171108-01-nfc-enVendor Advisory
FAQ
What is CVE-2017-15322?
CVE-2017-15322 is a vulnerability with a CVSS score of 6.5 (MEDIUM). Some Huawei smartphones with software of BGO-L03C158B003CUSTC158D001 and BGO-L03C331B009CUSTC331D001 have a DoS vulnerability due to insufficient input validation. An attacker could exploit this vulne...
How severe is CVE-2017-15322?
CVE-2017-15322 has been rated MEDIUM with a CVSS base score of 6.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2017-15322?
Check the references section above for vendor advisories and patch information. Affected products include: Huawei Baggio-L03A Firmware, Huawei Baggio-L03A.