Vulnerability Description
Audio driver in P9 smartphones with software The versions before EVA-AL10C00B389 has a denial of service (DoS) vulnerability. An attacker tricks a user into installing a malicious application on the smart phone, and the race condition cause null pointer accessing during the application access shared resource, which make the system reboot.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Huawei | P9 Firmware | < eva-al10c00b389 |
| Huawei | P9 | - |
Related Weaknesses (CWE)
References
- http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20170802-01-smartphVendor Advisory
- http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20170802-01-smartphVendor Advisory
FAQ
What is CVE-2017-8148?
CVE-2017-8148 is a vulnerability with a CVSS score of 4.7 (MEDIUM). Audio driver in P9 smartphones with software The versions before EVA-AL10C00B389 has a denial of service (DoS) vulnerability. An attacker tricks a user into installing a malicious application on the s...
How severe is CVE-2017-8148?
CVE-2017-8148 has been rated MEDIUM with a CVSS base score of 4.7/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2017-8148?
Check the references section above for vendor advisories and patch information. Affected products include: Huawei P9 Firmware, Huawei P9.