There is an out-of-bound read and write vulnerability in Huawei smartphone. A module dose not verify the input sufficiently. Attackers can exploit this vulnerability by modifying some configuration to cause out-of-bound read and write, causing denial of service. (Vulnerability ID: HWPSIRT-2020-05103) This vulnerability has been assigned a Common Vulnerabilities and Exposures (CVE) ID: CVE-2020-9211.
The product reads data past the end, or before the beginning, of the intended buffer.
Link | Tags |
---|---|
https://www.huawei.com/en/psirt/security-advisories/2021/huawei-sa-20210106-01-smartphone-en | vendor advisory |