CVE-2019-5214
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
There is a use after free vulnerability on certain driver component in Huawei Mate10 smartphones versions earlier than ALP-AL00B 9.0.0.167(C00E85R2P20T8). An attacker tricks the user into installing a malicious application, which make the software to reference memory after it has been freed. Successful exploit could cause a denial of service condition.
Se presenta una vulnerabilidad de uso de la memoria previamente liberada (use after free) en ciertos componentes del controlador en teléfonos inteligentes Mate10 de Huawei versiones anteriores a ALP-AL00B 9.0.0.167 (C00E85R2P20T8). Un atacante engaña al usuario para instalar una aplicación maliciosa, lo que hace que el software haga referencia a la memoria después de que se haya liberado. La explotación exitosa podría causar una condición de Denegación de Servicio.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2019-01-04 CVE Reserved
- 2019-06-06 CVE Published
- 2023-03-08 EPSS Updated
- 2024-08-04 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-416: Use After Free
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20190109-01-smartphone-en | 2019-06-10 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Huawei Search vendor "Huawei" | Mate 10 Firmware Search vendor "Huawei" for product "Mate 10 Firmware" | < alp-al00b_9.0.0.167\(c00e85r2p20t8\) Search vendor "Huawei" for product "Mate 10 Firmware" and version " < alp-al00b_9.0.0.167\(c00e85r2p20t8\)" | - |
Affected
| in | Huawei Search vendor "Huawei" | Mate 10 Search vendor "Huawei" for product "Mate 10" | - | - |
Safe
|