Vulnerability Description
Huawei smart phone Taurus-AL00B with versions earlier than 10.0.0.203(C00E201R7P2) have a use-after-free (UAF) vulnerability. An authenticated, local attacker may perform specific operations to exploit this vulnerability. Successful exploitation may tamper with the information to affect the availability.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Huawei | Taurus-Al00B Firmware | < 10.0.0.203\(c00e201r7p2\) |
| Huawei | Taurus-Al00B | - |
Related Weaknesses (CWE)
References
- https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20200325-01-smartpVendor Advisory
- https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20200325-01-smartpVendor Advisory
FAQ
What is CVE-2020-9065?
CVE-2020-9065 is a vulnerability with a CVSS score of 5.5 (MEDIUM). Huawei smart phone Taurus-AL00B with versions earlier than 10.0.0.203(C00E201R7P2) have a use-after-free (UAF) vulnerability. An authenticated, local attacker may perform specific operations to exploi...
How severe is CVE-2020-9065?
CVE-2020-9065 has been rated MEDIUM with a CVSS base score of 5.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2020-9065?
Check the references section above for vendor advisories and patch information. Affected products include: Huawei Taurus-Al00B Firmware, Huawei Taurus-Al00B.