3 results (0.002 seconds)

CVSS: 5.5EPSS: 0%CPEs: 6EXPL: 0

12 Nov 2019 — P20 Pro, P20, Mate RS smartphones with versions earlier than Charlotte-AL00A 9.1.0.321(C00E320R1P1T8), versions earlier than Emily-AL00A 9.1.0.321(C00E320R1P1T8), versions earlier than NEO-AL00D NEO-AL00 9.1.0.321(C786E320R1P1T8) have an improper validation vulnerability. The system does not perform a properly validation of certain input models, an attacker could trick the user to install a malicious application then craft a malformed model, successful exploit could allow the attacker to get and tamper cert... • http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20190925-03-smartphone-en • CWE-20: Improper Input Validation •

CVSS: 10.0EPSS: 50%CPEs: 159EXPL: 30

04 Oct 2019 — A use-after-free in binder.c allows an elevation of privilege from an application to the Linux Kernel. No user interaction is required to exploit this vulnerability, however exploitation does require either the installation of a malicious local application or a separate vulnerability in a network facing application.Product: AndroidAndroid ID: A-141720095 Un uso de la memoria previamente liberada en el archivo binder.c, permite una elevación de privilegios desde una aplicación en el kernel de Linux. No es re... • https://packetstorm.news/files/id/156495 • CWE-416: Use After Free •

CVSS: 6.8EPSS: 0%CPEs: 2EXPL: 0

18 Sep 2018 — Huawei Mate RS smartphones with the versions before NEO-AL00D 8.1.0.167(C786) have a lock-screen bypass vulnerability. An attacker could unlock and use the phone through certain operations. Los smartphones Huawei Mate RS en versiones anteriores a la NEO-AL00D 8.1.0.167(C786) tienen una vulnerabilidad de omisión de la pantalla de bloqueo. Un atacante podría desbloquear y emplear el teléfono mediante ciertas operaciones. • http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20180914-01-smartphone-en • CWE-863: Incorrect Authorization •