ZeroHour

CVE-2017-8159

CVSS 3.0
7.8 high
EPSS
1%p62
Published
()
Modified
Description

Some Huawei smartphones with software AGS-L09C233B019,AGS-W09C233B019,KOB-L09C233B017,KOB-W09C233B012 have a type confusion vulnerability. The program initializes a variable using one type, but it later accesses that variable using a type that is different with the original type when do certain register operation. Successful exploit could result in buffer overflow then may cause malicious code execution.

Vendors
huawei
Products
agassi-l09hn firmware, agassi-w09hn firmware, kobe-l09ahn firmware, kobe-w09chn firmware
Weakness
CWE-704
Vector
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.