CVE-2017-17320
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Huawei Mate 9 Pro smartphones with software of LON-AL00BC00B139D, LON-AL00BC00B229, LON-L29DC721B188 have a memory double free vulnerability. The system does not manage the memory properly, that frees on the same memory address twice. An attacker tricks the user who has root privilege to install a crafted application, successful exploit could result in malicious code execution.
Los smartphones Huawei Mate 9 Pro con software LON-AL00BC00B139D, LON-AL00BC00B229 y LON-L29DC721B188 tienen una vulnerabilidad de doble liberación (double free) de memoria. El sistema no gestiona la memoria correctamente, ya que libera dos veces en la misma dirección de memoria. Un atacante engaña al usuario con privilegios root para que instale una aplicación maliciosa, por lo que la explotación exitosa de esta vulnerabilidad podría desembocar en la ejecución de código malicioso.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2017-12-04 CVE Reserved
- 2018-03-20 CVE Published
- 2023-03-08 EPSS Updated
- 2024-08-05 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-415: Double Free
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20180314-02-smartphone-en | 2018-04-13 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Huawei Search vendor "Huawei" | Mate 9 Pro Firmware Search vendor "Huawei" for product "Mate 9 Pro Firmware" | lon-al00bc00b139d Search vendor "Huawei" for product "Mate 9 Pro Firmware" and version "lon-al00bc00b139d" | - |
Affected
| in | Huawei Search vendor "Huawei" | Mate 9 Pro Search vendor "Huawei" for product "Mate 9 Pro" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Mate 9 Pro Firmware Search vendor "Huawei" for product "Mate 9 Pro Firmware" | lon-al00bc00b229 Search vendor "Huawei" for product "Mate 9 Pro Firmware" and version "lon-al00bc00b229" | - |
Affected
| in | Huawei Search vendor "Huawei" | Mate 9 Pro Search vendor "Huawei" for product "Mate 9 Pro" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Mate 9 Pro Firmware Search vendor "Huawei" for product "Mate 9 Pro Firmware" | lon-l29dc721b188 Search vendor "Huawei" for product "Mate 9 Pro Firmware" and version "lon-l29dc721b188" | - |
Affected
| in | Huawei Search vendor "Huawei" | Mate 9 Pro Search vendor "Huawei" for product "Mate 9 Pro" | - | - |
Safe
|