445
VMScore

CVE-2019-5235

Published: 14/12/2019 Updated: 23/12/2019
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 5.3 | Impact Score: 1.4 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

Some Huawei smart phones have a null pointer dereference vulnerability. An attacker crafts specific packets and sends to the affected product to exploit this vulnerability. Successful exploitation may cause the affected phone to be abnormal.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

huawei alp-al00b_firmware 8.0.0.153\\(c00\\)

huawei alp-tl00b_firmware 8.0.0.129\\(sp2c01\\)

huawei bla-al00b_firmware 8.0.0.129\\(sp2c786\\)

huawei bla-al00b_firmware 8.0.0.153\\(c00\\)

huawei bla-tl00b_firmware 8.0.0.129\\(sp2c01\\)

huawei charlotte-al00a_firmware 8.1.0.176\\(c00\\)

huawei charlotte-tl00b_firmware 8.1.0.176\\(c01\\)

huawei columbia-al10b_firmware 8.1.0.163\\(c00\\)

huawei columbia-al10i_firmware 8.1.0.150\\(c675custc675d2\\)

huawei columbia-l29d_firmware 8.1.0.146\\(c461\\)

huawei columbia-l29d_firmware 8.1.0.148\\(c185\\)

huawei columbia-l29d_firmware 8.1.0.151\\(c10\\)

huawei columbia-l29d_firmware 8.1.0.151\\(c432\\)

huawei columbia-tl00d_firmware 8.1.0.186\\(c01gt\\)

huawei elle-al00b_firmware 9.1.0.162\\(c00e160r2p1\\)

huawei elle-tl00b_firmware 9.1.0.162\\(c01e160r2p1\\)

huawei emily-al00a_firmware 8.1.0.190\\(c00\\)

huawei emily-tl00b_firmware 8.1.0.175\\(c01\\)

huawei ever-al00b_firmware 9.0.0.195\\(c00e195r2p1\\)

huawei ever-l29b_firmware 9.0.0.206\\(c185e3r3p1\\)

huawei ever-l29b_firmware 9.0.0.207\\(c636e3r2p1\\)

huawei ever-l29b_firmware 9.0.0.208\\(c432e3r1p12\\)

huawei harry-al00c_firmware 9.1.0.206\\(c00e205r3p1\\)

huawei harry-al10b_firmware -

huawei harry-al10b_firmware 9.1.0.206\\(c00e205r3p1\\)

huawei harry-tl00c_firmware 9.0.1.162\\(c01e160r2p3\\)

huawei hima-al00b_firmware 9.0.0.200\\(c00e200r2p1\\)

huawei jackman-l21_firmware 8.2.0.160\\(c185\\)

huawei jackman-l22_firmware 8.2.0.156\\(c636r2p2\\)

huawei jackman-l23_firmware 8.2.0.152\\(c45custc45d1\\)

huawei jackman-l23_firmware 8.2.0.162\\(c605\\)

huawei johnson-al00ic_firmware 8.2.0.161\\(c675custc675d1\\)

huawei johnson-al10c_firmware 8.2.0.165\\(c00r1p16\\)

huawei johnson-l21c_firmware 8.2.0.130\\(c461r1p1\\)

huawei johnson-l21c_firmware 8.2.0.131\\(c10r2p2\\)

huawei johnson-l21c_firmware 8.2.0.136\\(c432custc432d1\\)

huawei johnson-l21d_firmware 8.2.0.101\\(c10custc10d1\\)

huawei johnson-l21d_firmware 8.2.0.101\\(c432custc432d1\\)

huawei johnson-l21d_firmware 8.2.0.131\\(c55custc55d1\\)

huawei johnson-l22c_firmware 8.2.0.105\\(c185r1p1\\)

huawei johnson-l22c_firmware 8.2.0.107\\(c636r2p1\\)

huawei johnson-l22d_firmware 8.2.0.105\\(c185r2p1\\)

huawei johnson-l22d_firmware 8.2.0.107\\(c636r2p1\\)

huawei johnson-l23c_firmware 8.2.0.130\\(c636custc636d2\\)

huawei johnson-l23c_firmware 8.2.0.133\\(c605custc605d1\\)

huawei johnson-l42ic_firmware 8.2.0.155\\(c675r2p1\\)

huawei johnson-l42ie_firmware 8.2.0.155\\(c675r2p1\\)

huawei johnson-l42if_firmware 8.2.0.155\\(c675r2p1\\)

huawei johnson-tl00d_firmware 8.2.0.100\\(c541custc541d1\\)

huawei johnson-tl00d_firmware 8.2.0.165\\(c01r1p16\\)

huawei johnson-tl00f_firmware 8.2.0.100\\(c541custc541d1\\)

huawei laya-al00ep_firmware 9.0.0.201\\(c786e200r2p1\\)

huawei neo-al00d_firmware 8.1.0.175\\(c786\\)

huawei potter-al00c_firmware 9.1.0.208\\(c00e205r3p1\\)

huawei potter-al10a_firmware 9.1.0.208\\(c00e205r3p1\\)

huawei princeton-al10b_firmware 9.1.0.211\\(c00e203r2p2\\)

huawei princeton-al10d_firmware 9.1.0.212\\(c00e204r2p2\\)

huawei princeton-al10i_firmware 9.0.1.150\\(c675e9r1p4\\)

huawei princeton-tl10c_firmware 9.1.0.211\\(c01e203r2p2\\)

huawei tony-al00b_firmware 9.1.0.206\\(c00e200r2p3\\)

huawei tony-tl00b_firmware 9.1.0.206\\(c01e200r2p3\\)

huawei vogue-al00a_firmware 9.1.0.162\\(c00e160r2p1\\)

huawei vogue-al00a-preload_firmware 9.1.0.12\\(c00r1\\)

huawei vogue-al10c_firmware 9.1.0.162\\(c00e160r2p1\\)

huawei vogue-al10c-preload_firmware 9.1.0.12\\(c00r1\\)

huawei vogue-tl00b_firmware 9.1.0.162\\(c01e160r2p1\\)

Vendor Advisories

There is a null pointer reference vulnerability in some Huawei smart phones An attacker crafts specific packets and sends to the affected product to exploit this vulnerability Successful exploitation may cause the affected phone abnormal (Vulnerability ID: HWPSIRT-2019-05097) This vulnerability has been assigned a Common Vulnerabilities and Expo ...