Description
The Bastet driver of Honor 9 Huawei smart phones with software of versions earlier than Stanford-AL10C00B175 has integer overflow vulnerability due to the lack of parameter validation. An attacker tricks a user into installing a malicious APP which has the root privilege; the APP can send a specific parameter to the driver of the smart phone, causing arbitrary code execution.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2017-17167 | The Bastet driver of Honor 9 Huawei smart phones with software of versions earlier than Stanford-AL10C00B175 has integer overflow vulnerability due to the lack of parameter validation. An attacker tricks a user into installing a malicious APP which has the root privilege; the APP can send a specific parameter to the driver of the smart phone, causing arbitrary code execution. |
References
History
No history.
Status: PUBLISHED
Assigner: huawei
Published:
Updated: 2024-09-16T19:09:16.589Z
Reserved: 2017-04-25T00:00:00.000Z
Link: CVE-2017-8205
No data.
Status : Modified
Published: 2017-11-22T19:29:05.193
Modified: 2026-05-13T00:24:29.033
Link: CVE-2017-8205
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD