The Bastet driver of Honor 9 Huawei smart phones with software of versions earlier than Stanford-AL10C00B175 has integer overflow vulnerability due to the lack of parameter validation. An attacker tricks a user into installing a malicious APP which has the root privilege; the APP can send a specific parameter to the driver of the smart phone, causing arbitrary code execution.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: huawei
Published: 2017-11-22T19:00:00Z
Updated: 2024-09-16T19:09:16.589Z
Reserved: 2017-04-25T00:00:00
Link: CVE-2017-8205
Vulnrichment
No data.
NVD
Status : Modified
Published: 2017-11-22T19:29:05.193
Modified: 2024-11-21T03:33:31.963
Link: CVE-2017-8205
Redhat
No data.