CVE-2019-5219
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
There is a double free vulnerability on certain drivers of Huawei Mate10 smartphones versions earlier than ALP-AL00B 9.0.0.181(C00E87R2P20T8). An attacker tricks the user into installing a malicious application, which makes multiple processes operate the same resource at the same time. Successful exploit could cause a denial of service condition.
Se presenta una vulnerabilidad de doble liberación (double free) en ciertos controladores de teléfonos inteligentes Mate10 de Huawei versiones anteriores a ALP-AL00B 9.0.0.181 (C00E87R2P20T8). Un atacante engaña al usuario para instalar una aplicación maliciosa, que permite a múltiples procesos operar el mismo recurso al mismo tiempo. La explotación exitosa podría causar una condición de Denegación de Servicio.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2019-01-04 CVE Reserved
- 2019-06-06 CVE Published
- 2023-03-08 EPSS Updated
- 2024-08-04 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-415: Double Free
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20190130-01-smartphone-en | 2019-06-10 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Huawei Search vendor "Huawei" | Mate 10 Firmware Search vendor "Huawei" for product "Mate 10 Firmware" | < alp-al00b_9.0.0.181\(c00e87r2p20t8\) Search vendor "Huawei" for product "Mate 10 Firmware" and version " < alp-al00b_9.0.0.181\(c00e87r2p20t8\)" | - |
Affected
| in | Huawei Search vendor "Huawei" | Mate 10 Search vendor "Huawei" for product "Mate 10" | - | - |
Safe
|