Honor V10 smartphones with versions earlier than BKL-AL20 10.0.0.156(C00E156R2P4) and versions earlier than BKL-L09 10.0.0.146(C432E4R1P4) have an out of bounds write vulnerability. The software writes data past the end of the intended buffer because of insufficient validation of certain parameter when initializing certain driver program. An attacker could trick the user into installing a malicious application, successful exploit could cause the device to reboot.
Advisories
Source ID Title
EUVD EUVD EUVD-2020-12618 Honor V10 smartphones with versions earlier than BKL-AL20 10.0.0.156(C00E156R2P4) and versions earlier than BKL-L09 10.0.0.146(C432E4R1P4) have an out of bounds write vulnerability. The software writes data past the end of the intended buffer because of insufficient validation of certain parameter when initializing certain driver program. An attacker could trick the user into installing a malicious application, successful exploit could cause the device to reboot.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: huawei

Published:

Updated: 2024-08-04T06:46:30.912Z

Reserved: 2019-11-29T00:00:00

Link: CVE-2020-1792

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2020-02-28T19:15:11.297

Modified: 2024-11-21T05:11:23.407

Link: CVE-2020-1792

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.