CVE-2018-7992
5.5
Vector
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Exploitability: 1.8 / Impact: 3.6
Source: NVD
Description
Mdapt Driver of Huawei MediaPad M3 BTV-W09C128B353CUSTC128D001; Mate 9 Pro versions earlier than 8.0.0.356(C00); P10 Plus versions earlier than 8.0.0.357(C00) has a buffer overflow vulnerability. The driver does not sufficiently validate the input, an attacker could trick the user to install a malicious application which would send crafted parameters to the driver. Successful exploit could cause a denial of service condition.
Affected (4)
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Version btv-w09c128b353custc128d001 |
| Running on/with | Platform Versions |
|---|---|
Huawei Mediapad M3 | All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Before 8.0.0.356\(c00\) |
| Running on/with | Platform Versions |
|---|---|
Huawei Mate 9 Pro | All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Before 8.0.0.357\(c00\) |
| Running on/with | Platform Versions |
|---|---|
Huawei P10 Plus | All versions |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Before 8.0.0.356\(c00\) |
| Running on/with | Platform Versions |
|---|---|
Huawei Mate 9 | All versions |
References (2)
Source: psirt@huawei.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Timeline
No history available yet.