There is a stack overflow vulnerability in some Huawei smart phone. An attacker can craft specific packet to exploit this vulnerability. Due to insufficient verification, this could be exploited to tamper with the information to affect the availability. (Vulnerability ID: HWPSIRT-2019-11030) This vulnerability has been assigned a Common Vulnerabilities and Exposures (CVE) ID: CVE-2020-9253.
History

Tue, 14 Jan 2025 08:45:00 +0000

Type Values Removed Values Added
First Time appeared Huawei
Huawei lion-al00c
Huawei lion-al00c Firmware
Weaknesses CWE-787
CPEs cpe:2.3:h:huawei:lion-al00c:-:*:*:*:*:*:*:*
cpe:2.3:o:huawei:lion-al00c_firmware:*:*:*:*:*:*:*:*
Vendors & Products Huawei
Huawei lion-al00c
Huawei lion-al00c Firmware

Fri, 27 Dec 2024 15:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Fri, 27 Dec 2024 10:00:00 +0000

Type Values Removed Values Added
Description There is a stack overflow vulnerability in some Huawei smart phone. An attacker can craft specific packet to exploit this vulnerability. Due to insufficient verification, this could be exploited to tamper with the information to affect the availability. (Vulnerability ID: HWPSIRT-2019-11030) This vulnerability has been assigned a Common Vulnerabilities and Exposures (CVE) ID: CVE-2020-9253.
Weaknesses CWE-121
References
Metrics cvssV3_1

{'score': 6.3, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L'}


cve-icon MITRE

Status: PUBLISHED

Assigner: huawei

Published: 2024-12-27T09:55:02.465Z

Updated: 2024-12-27T14:57:54.584Z

Reserved: 2020-02-18T00:00:00.000Z

Link: CVE-2020-9253

cve-icon Vulnrichment

Updated: 2024-12-27T14:57:51.328Z

cve-icon NVD

Status : Analyzed

Published: 2024-12-27T10:15:16.610

Modified: 2025-01-13T19:38:19.563

Link: CVE-2020-9253

cve-icon Redhat

No data.