CVE-2017-17139
—CVSS 3.0
5.5 medium
EPSS
<1%p49
Published
()
Modified
Description
Huawei Mate 9 and Mate 9 pro smart phones with software the versions before MHA-AL00B 8.0.0.334(C00); the versions before LON-AL00B 8.0.0.334(C00) have a information leak vulnerability in the date service proxy implementation. An attacker may trick a user into installing a malicious application and application can exploit the vulnerability to get kernel date which may cause sensitive information leak.
- Vendors
- huawei
- Products
- mate 9 pro firmware, mate 9 firmware
- Weakness
- CWE-200
- Vector
- CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
In the news0 stories
No ingested article mentions this CVE yet.