
CVE-2020-1812
https://notcve.org/view.php?id=CVE-2020-1812
18 Feb 2020 — HUAWEI P30 smartphones with versions earlier than 10.0.0.173(C00E73R1P11) have an improper authentication vulnerability. Due to improperly validation of certain application, an attacker should trick the user into installing a malicious application to exploit this vulnerability. Successful exploit could allow the attacker to bypass the authentication to perform unauthorized operations. Los teléfonos inteligentes HUAWEI P30 con versiones anteriores a 10.0.0.173(C00E73R1P11), presentan una vulnerabilidad de au... • http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20200120-01-smartphone-en • CWE-287: Improper Authentication •

CVE-2020-0022 – Android Bluetooth Remote Denial of Service
https://notcve.org/view.php?id=CVE-2020-0022
13 Feb 2020 — In reassemble_and_dispatch of packet_fragmenter.cc, there is possible out of bounds write due to an incorrect bounds calculation. This could lead to remote code execution over Bluetooth with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.0 Android-8.1 Android-9 Android-10Android ID: A-143894715 En la función reassemble_and_dispatch del archivo packet_fragmenter.cc, es posible una escritura fuera de límites debido a un cálculo de... • https://packetstorm.news/files/id/156891 • CWE-682: Incorrect Calculation •

CVE-2019-19441
https://notcve.org/view.php?id=CVE-2019-19441
03 Jan 2020 — HUAWEI P30 smart phones with versions earlier than 10.0.0.166(C00E66R1P11) have an information leak vulnerability. An attacker could send specific command in the local area network (LAN) to exploit this vulnerability. Successful exploitation may cause information leak. Los teléfonos inteligentes HUAWEI P30 con versiones anteriores a la versión 10.0.0.166 (C00E66R1P11), tienen una vulnerabilidad de filtrado de información. Un atacante podría enviar un comando específico en la red de área local (LAN) para exp... • https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20200102-02-smartphone-en •

CVE-2019-5227
https://notcve.org/view.php?id=CVE-2019-5227
29 Nov 2019 — P30, P30 Pro, Mate 20 smartphones with software of versions earlier than ELLE-AL00B 9.1.0.193(C00E190R2P1), versions earlier than VOGUE-AL00A 9.1.0.193(C00E190R2P1), versions earlier than Hima-AL00B 9.1.0.135(C00E133R2P1) and HiSuite with versions earlier than HiSuite 9.1.0.305 have a version downgrade vulnerability. The device and HiSuite software do not validate the upgrade package sufficiently, so that the system of smartphone can be downgraded to an older version. Los teléfonos inteligentes P30, P30 Pro... • https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20190904-01-smartphone-en • CWE-346: Origin Validation Error •

CVE-2019-5224
https://notcve.org/view.php?id=CVE-2019-5224
29 Nov 2019 — P30 smartphones with versions earlier than ELLE-AL00B 9.1.0.193(C00E190R1P21) have an out of bounds read vulnerability. The system does not properly validate certain length parameter which an application transports to kernel. An attacker tricks the user to install a malicious application, successful exploit could cause out of bounds read and information disclosure. Los teléfonos inteligentes P30 con versiones anteriores a ELLE-AL00B 9.1.0.193(C00E190R1P21), presentan una vulnerabilidad de lectura fuera de l... • https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20190821-03-smartphone-en • CWE-125: Out-of-bounds Read •

CVE-2019-5225
https://notcve.org/view.php?id=CVE-2019-5225
29 Nov 2019 — P30, Mate 20, P30 Pro smartphones with software of versions earlier than ELLE-AL00B 9.1.0.193(C00E190R1P21), versions earlier than Hima-AL00B 9.1.0.135(C00E200R2P1), versions earlier than VOGUE-AL00A 9.1.0.193(C00E190R1P12) have a buffer overflow vulnerability on several , the system does not properly validate certain length parameter which an application transports to kernel. An attacker tricks the user to install a malicious application, successful exploit could cause malicious code execution. Los teléfon... • https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20190821-02-smartphone-en • CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') •

CVE-2019-5226
https://notcve.org/view.php?id=CVE-2019-5226
29 Nov 2019 — P30, P30 Pro, Mate 20 smartphones with software of versions earlier than ELLE-AL00B 9.1.0.193(C00E190R2P1), versions earlier than VOGUE-AL00A 9.1.0.193(C00E190R2P1), versions earlier than Hima-AL00B 9.1.0.135(C00E133R2P1) and HiSuite with versions earlier than HiSuite 9.1.0.305 have a version downgrade vulnerability. The device and HiSuite software do not validate the upgrade package sufficiently, so that the system of smartphone can be downgraded to an older version. Los teléfonos inteligentes P30, P30 Pro... • https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20190904-01-smartphone-en • CWE-346: Origin Validation Error •

CVE-2019-5288
https://notcve.org/view.php?id=CVE-2019-5288
13 Nov 2019 — P30 smart phones with versions earlier than ELLE-AL00B 9.1.0.193(C00E190R2P1) have an integer overflow vulnerability due to insufficient check on specific parameters. An attacker tricks the user into installing a malicious application, obtains the root permission and constructs specific parameters to the camera program to exploit this vulnerability. Successful exploit could cause the program to break down or allow for arbitrary code execution. Los teléfonos inteligentes P30 con versiones anteriores a ELLE-A... • http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20190925-01-smartphone-en • CWE-190: Integer Overflow or Wraparound •

CVE-2019-5287
https://notcve.org/view.php?id=CVE-2019-5287
13 Nov 2019 — P30 smart phones with versions earlier than ELLE-AL00B 9.1.0.193(C00E190R2P1) have an integer overflow vulnerability due to insufficient check on specific parameters. An attacker tricks the user into installing a malicious application, obtains the root permission and constructs specific parameters to the camera program to exploit this vulnerability. Successful exploit could cause the program to break down or allow for arbitrary code execution. Los teléfonos inteligentes P30 con versiones anteriores a ELLE-A... • http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20190925-01-smartphone-en • CWE-190: Integer Overflow or Wraparound •

CVE-2019-5231
https://notcve.org/view.php?id=CVE-2019-5231
12 Nov 2019 — P30 smartphones with versions earlier than ELLE-AL00B 9.1.0.186(C00E180R2P1) have an improper authorization vulnerability. The software incorrectly performs an authorization check when a user attempts to perform certain action. Successful exploit could allow the attacker to update a crafted package. Teléfonos Inteligentes P30 con versiones anteriores a ELLE-AL00B 9.1.0.186(C00E180R2P1), presentan una vulnerabilidad de autorización inapropiada. El software realiza incorrectamente una comprobación de autoriza... • http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20190930-01-smartphone-en • CWE-863: Incorrect Authorization •