CVE-2017-8214
6.2
Vector
CVSS:3.0/AV:P/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Exploitability: 0.3 / Impact: 5.9
Source: NVD
Description
Honor 8,Honor V8,Honor 9,Honor V9,Nova 2,Nova 2 Plus,P9,P10 Plus,Toronto Huawei smart phones with software of versions earlier than FRD-AL00C00B391, versions earlier than FRD-DL00C00B391, versions earlier than KNT-AL10C00B391, versions earlier than KNT-AL20C00B391, versions earlier than KNT-UL10C00B391, versions earlier than KNT-TL10C00B391, versions earlier than Stanford-AL00C00B175, versions earlier than Stanford-AL10C00B175, versions earlier than Stanford-TL00C01B175, versions earlier than Duke-AL20C00B191, versions earlier than Duke-TL30C01B191, versions earlier than Picasso-AL00C00B162, versions earlier than Picasso-TL00C01B162 , versions earlier than Barca-AL00C00B162, versions earlier than Barca-TL00C00B162, versions earlier than EVA-AL10C00B396SP03, versions earlier than EVA-CL00C92B396, versions earlier than EVA-DL00C17B396, versions earlier than EVA-TL00C01B396 , versions earlier than Vicky-AL00AC00B172, versions earlier than Toronto-AL00AC00B191, versions earlier than Toronto-TL10C01B191 have an unlock code verification bypassing vulnerability. An attacker with the root privilege of a mobile can exploit this vulnerability to bypass the unlock code verification and unlock the mobile phone bootloader.
Affected (22)
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before frd-al00c00b391 |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Before frd-dl00c00b391 |
| Running on/with | Platform Versions |
|---|---|
Huawei Honor 8 | All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Before knt-al10c00b391 |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Before knt-al20c00b391 |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| Before knt-ul10c00b391 |
Configuration F
| Vulnerable Software | Affected Versions |
|---|---|
| Before knt-tl10c00b391 |
| Running on/with | Platform Versions |
|---|---|
Huawei Honor V8 | All versions |
Configuration G
| Vulnerable Software | Affected Versions |
|---|---|
| Before stanford-al00c00b175 |
Configuration H
| Vulnerable Software | Affected Versions |
|---|---|
| Before stanford-al10c00b175 |
Configuration I
| Vulnerable Software | Affected Versions |
|---|---|
| Before stanford-tl00c01b175 |
| Running on/with | Platform Versions |
|---|---|
Huawei Honor 9 | All versions |
Configuration J
| Vulnerable Software | Affected Versions |
|---|---|
| Before duke-al20c00b191 |
Configuration K
| Vulnerable Software | Affected Versions |
|---|---|
| Before duke-tl30c01b191 |
| Running on/with | Platform Versions |
|---|---|
Huawei Honor V9 | All versions |
Configuration L
| Vulnerable Software | Affected Versions |
|---|---|
| Before picasso-al00c00b162 |
Configuration M
| Vulnerable Software | Affected Versions |
|---|---|
| Before picasso-tl00c01b162 |
| Running on/with | Platform Versions |
|---|---|
Huawei Nova 2 | All versions |
Configuration N
| Vulnerable Software | Affected Versions |
|---|---|
| Before barca-al00c00b162 |
Configuration O
| Vulnerable Software | Affected Versions |
|---|---|
| Before barca-tl00c00b162 |
| Running on/with | Platform Versions |
|---|---|
Huawei Nova 2 Plus | All versions |
Configuration P
| Vulnerable Software | Affected Versions |
|---|---|
| Before eva-al10c00b396sp03 |
Configuration Q
| Vulnerable Software | Affected Versions |
|---|---|
| Before eva-cl00c92b396 |
Configuration R
| Vulnerable Software | Affected Versions |
|---|---|
| Before eva-dl00c17b396 |
Configuration S
| Vulnerable Software | Affected Versions |
|---|---|
| Before eva-tl00c01b396 |
| Running on/with | Platform Versions |
|---|---|
Huawei P9 | All versions |
Configuration T
| Vulnerable Software | Affected Versions |
|---|---|
| Before vicky-al00ac00b172 |
| Running on/with | Platform Versions |
|---|---|
Huawei P10 Plus | All versions |
Configuration U
| Vulnerable Software | Affected Versions |
|---|---|
| Before toronto-al00ac00b191 |
Configuration V
| Vulnerable Software | Affected Versions |
|---|---|
| Before toronto-tl10c01b191 |
| Running on/with | Platform Versions |
|---|---|
Huawei Toronto | All versions |
References (2)
Source: psirt@huawei.com
Issue TrackingVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Issue TrackingVendor Advisory
Timeline
No history available yet.