5.5
CVSSv3

CVE-2019-5224

Published: 29/11/2019 Updated: 11/12/2019
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 5.5 | Impact Score: 3.6 | Exploitability Score: 1.8
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:P/I:N/A:N

Vulnerability Summary

P30 smartphones with versions earlier than ELLE-AL00B 9.1.0.193(C00E190R1P21) have an out of bounds read vulnerability. The system does not properly validate certain length parameter which an application transports to kernel. An attacker tricks the user to install a malicious application, successful exploit could cause out of bounds read and information disclosure.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

huawei p30_firmware

Vendor Advisories

There is an out of bounds read vulnerability on several smartphones, the system does not properly validate certain length parameter which an application transports to kernel An attacker tricks the user to install a malicious application, successful exploit could cause out of bounds read and information disclosure (Vulnerability ID: HWPSIRT-2019-0 ...