Vulnerability Description
Huawei smart phones Honor V20 with the versions before 9.0.1.161(C00E161R2P2) have an information leak vulnerability. An attacker may trick a user into installing a malicious application. Due to coding error during layer information processing, attackers can exploit this vulnerability to obtain some layer information.
CVSS Score
LOW
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Huawei | Honor V20 Firmware | < 9.0.1.161\(c00e161r2p2\) |
| Huawei | Honor V20 | - |
References
- https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20190807-01-mobileVendor Advisory
- https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20190807-01-mobileVendor Advisory
FAQ
What is CVE-2019-5301?
CVE-2019-5301 is a vulnerability with a CVSS score of 3.3 (LOW). Huawei smart phones Honor V20 with the versions before 9.0.1.161(C00E161R2P2) have an information leak vulnerability. An attacker may trick a user into installing a malicious application. Due to codin...
How severe is CVE-2019-5301?
CVE-2019-5301 has been rated LOW with a CVSS base score of 3.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2019-5301?
Check the references section above for vendor advisories and patch information. Affected products include: Huawei Honor V20 Firmware, Huawei Honor V20.