CVE-2019-5282
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Bastet module of some Huawei smartphones with Versions earlier than Emily-AL00A 9.0.0.182(C00E82R1P21), Versions earlier than Emily-TL00B 9.0.0.182(C01E82R1P21), Versions earlier than Emily-L09C 9.0.0.203(C432E7R1P11), Versions earlier than Emily-L29C 9.0.0.203(C432E7R1P11), Versions earlier than Emily-L29C 9.0.0.202(C185E2R1P12) have a double free vulnerability. An attacker tricks the user into installing a malicious application, which frees on the same memory address twice. Successful exploit could result in malicious code execution.
El módulo Bastet de algunos teléfonos inteligentes Huawei con versiones anteriores a Emily-AL00A 9.0.0.182(C00E82R1P21), versiones anteriores a Emily-TL00B 9.0.0.182(C01E82R1P21), versiones anteriores a Emily-L09C 9.0.0.203(C432E7R1P11), versiones anteriores a Emily-L29C 9.0.0.203 (C432E7R1P11), las versiones anteriores a Emily-L29C 9.0.0.202 (C185E2R1P12), presentan una vulnerabilidad de doble liberación. Un atacante engaña al usuario para que instale una aplicación maliciosa, que se libera dos veces en la misma dirección de memoria. Una explotación con éxito podría resultar en la ejecución de código malicioso.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2019-01-04 CVE Reserved
- 2019-11-13 CVE Published
- 2023-03-08 EPSS Updated
- 2024-08-04 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-415: Double Free
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20190220-01-smartphone-en | 2019-11-15 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Huawei Search vendor "Huawei" | Emily-al00a Firmware Search vendor "Huawei" for product "Emily-al00a Firmware" | < emily-al00a_9.0.0.182\(c00e82r1p21\) Search vendor "Huawei" for product "Emily-al00a Firmware" and version " < emily-al00a_9.0.0.182\(c00e82r1p21\)" | - |
Affected
| in | Huawei Search vendor "Huawei" | Emily-al00a Search vendor "Huawei" for product "Emily-al00a" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Emily-tl00b Firmware Search vendor "Huawei" for product "Emily-tl00b Firmware" | < emily-tl00b_9.0.0.182\(c01e82r1p21\) Search vendor "Huawei" for product "Emily-tl00b Firmware" and version " < emily-tl00b_9.0.0.182\(c01e82r1p21\)" | - |
Affected
| in | Huawei Search vendor "Huawei" | Emily-tl00b Search vendor "Huawei" for product "Emily-tl00b" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Emily-l09c Firmware Search vendor "Huawei" for product "Emily-l09c Firmware" | < emily-l09c_9.0.0.203\(c432e7r1p11\) Search vendor "Huawei" for product "Emily-l09c Firmware" and version " < emily-l09c_9.0.0.203\(c432e7r1p11\)" | - |
Affected
| in | Huawei Search vendor "Huawei" | Emily-l09c Search vendor "Huawei" for product "Emily-l09c" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Emily-l29c Firmware Search vendor "Huawei" for product "Emily-l29c Firmware" | < emily-l29c_9.0.0.203\(c432e7r1p11\) Search vendor "Huawei" for product "Emily-l29c Firmware" and version " < emily-l29c_9.0.0.203\(c432e7r1p11\)" | - |
Affected
| in | Huawei Search vendor "Huawei" | Emily-l29c Search vendor "Huawei" for product "Emily-l29c" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Emily-l29c Firmware Search vendor "Huawei" for product "Emily-l29c Firmware" | < emily-l29c_9.0.0.202\(c185e2r1p12\) Search vendor "Huawei" for product "Emily-l29c Firmware" and version " < emily-l29c_9.0.0.202\(c185e2r1p12\)" | - |
Affected
| in | Huawei Search vendor "Huawei" | Emily-l29c Search vendor "Huawei" for product "Emily-l29c" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Emily-l29c Firmware Search vendor "Huawei" for product "Emily-l29c Firmware" | < emily-l29c_9.0.0.207\(c636e7r1p13\) Search vendor "Huawei" for product "Emily-l29c Firmware" and version " < emily-l29c_9.0.0.207\(c636e7r1p13\)" | - |
Affected
| in | Huawei Search vendor "Huawei" | Emily-l29c Search vendor "Huawei" for product "Emily-l29c" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Emily-l29c Firmware Search vendor "Huawei" for product "Emily-l29c Firmware" | < emily-l29c_9.0.0.205\(c635e2r1p11\) Search vendor "Huawei" for product "Emily-l29c Firmware" and version " < emily-l29c_9.0.0.205\(c635e2r1p11\)" | - |
Affected
| in | Huawei Search vendor "Huawei" | Emily-l29c Search vendor "Huawei" for product "Emily-l29c" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Hima-l09ca Firmware Search vendor "Huawei" for product "Hima-l09ca Firmware" | < hima-l09ca_9.0.0.198\(c432e10r1p16\) Search vendor "Huawei" for product "Hima-l09ca Firmware" and version " < hima-l09ca_9.0.0.198\(c432e10r1p16\)" | - |
Affected
| in | Huawei Search vendor "Huawei" | Hima-l09ca Search vendor "Huawei" for product "Hima-l09ca" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Hima-l29ca Firmware Search vendor "Huawei" for product "Hima-l29ca Firmware" | < hima-l29ca_9.0.0.198\(c432e10r1p16\) Search vendor "Huawei" for product "Hima-l29ca Firmware" and version " < hima-l29ca_9.0.0.198\(c432e10r1p16\)" | - |
Affected
| in | Huawei Search vendor "Huawei" | Hima-l29ca Search vendor "Huawei" for product "Hima-l29ca" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Hima-l29c Firmware Search vendor "Huawei" for product "Hima-l29c Firmware" | < hima-l29c_9.0.0.204\(c636e10r2p1\) Search vendor "Huawei" for product "Hima-l29c Firmware" and version " < hima-l29c_9.0.0.204\(c636e10r2p1\)" | - |
Affected
| in | Huawei Search vendor "Huawei" | Hima-l29c Search vendor "Huawei" for product "Hima-l29c" | - | - |
Safe
|