CVE-2019-5235
5.3
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
Exploitability: 3.9 / Impact: 1.4
Source: NVD
Description
Some Huawei smart phones have a null pointer dereference vulnerability. An attacker crafts specific packets and sends to the affected product to exploit this vulnerability. Successful exploitation may cause the affected phone to be abnormal.
Affected (66)
Products: Huawei: Alp Al00b Firmware, Alp Tl00b Firmware, Bla Al00b Firmware, Bla Tl00b Firmware, Charlotte Al00a Firmware, Charlotte Tl00b Firmware, Columbia Al10b Firmware, Columbia Al10i Firmware, Columbia L29d Firmware, Columbia Tl00d Firmware, Elle Al00b Firmware, Elle Tl00b Firmware, Emily Al00a Firmware, Emily Tl00b Firmware, Ever Al00b Firmware, Ever L29b Firmware, Harry Al00c Firmware, Harry Al10b Firmware, Harry Tl00c Firmware, Hima Al00b Firmware, Jackman L21 Firmware, Jackman L22 Firmware, Jackman L23 Firmware, Johnson Al00ic Firmware, Johnson Al10c Firmware, Johnson L21c Firmware, Johnson L21d Firmware, Johnson L22c Firmware, Johnson L22d Firmware, Johnson L23c Firmware, Johnson L42ic Firmware, Johnson L42ie Firmware, Johnson L42if Firmware, Johnson Tl00d Firmware, Johnson Tl00f Firmware, Laya Al00ep Firmware, Neo Al00d Firmware, Potter Al00c Firmware, Potter Al10a Firmware, Princeton Al10b Firmware, Princeton Al10d Firmware, Princeton Al10i Firmware, Princeton Tl10c Firmware, Tony Al00b Firmware, Tony Tl00b Firmware, Vogue Al00a Firmware, Vogue Al00a Preload Firmware, Vogue Al10c Firmware, Vogue Al10c Preload Firmware, Vogue Tl00b Firmware
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Version 8.0.0.153(c00) |
| Running on/with | Platform Versions |
|---|---|
Huawei Alp Al00b | All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Version 8.0.0.129(sp2c01) |
| Running on/with | Platform Versions |
|---|---|
Huawei Alp Tl00b | All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Version 8.0.0.129(sp2c786) |
| Running on/with | Platform Versions |
|---|---|
Huawei Bla Al00b | All versions |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Version 8.0.0.129(sp2c01) |
| Running on/with | Platform Versions |
|---|---|
Huawei Bla Tl00b | All versions |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| Version 8.1.0.176(c00) |
| Running on/with | Platform Versions |
|---|---|
Huawei Charlotte Al00a | All versions |
Configuration F
| Vulnerable Software | Affected Versions |
|---|---|
| Version 8.1.0.176(c01) |
| Running on/with | Platform Versions |
|---|---|
Huawei Charlotte Tl00b | All versions |
Configuration G
| Vulnerable Software | Affected Versions |
|---|---|
| Version 8.1.0.163(c00) |
| Running on/with | Platform Versions |
|---|---|
Huawei Columbia Al10b | All versions |
Configuration H
| Vulnerable Software | Affected Versions |
|---|---|
| Version 8.1.0.150(c675custc675d2) |
| Running on/with | Platform Versions |
|---|---|
Huawei Columbia Al10i | All versions |
Configuration I
| Vulnerable Software | Affected Versions |
|---|---|
| Version 8.1.0.146(c461) |
| Running on/with | Platform Versions |
|---|---|
Huawei Columbia L29d | All versions |
Configuration J
| Vulnerable Software | Affected Versions |
|---|---|
| Version 8.1.0.186(c01gt) |
| Running on/with | Platform Versions |
|---|---|
Huawei Columbia Tl00d | All versions |
Configuration K
| Vulnerable Software | Affected Versions |
|---|---|
| Version 9.1.0.162(c00e160r2p1) |
| Running on/with | Platform Versions |
|---|---|
Huawei Elle Al00b | All versions |
Configuration L
| Vulnerable Software | Affected Versions |
|---|---|
| Version 9.1.0.162(c01e160r2p1) |
| Running on/with | Platform Versions |
|---|---|
Huawei Elle Tl00b | All versions |
Configuration M
| Vulnerable Software | Affected Versions |
|---|---|
| Version 8.1.0.190(c00) |
| Running on/with | Platform Versions |
|---|---|
Huawei Emily Al00a | All versions |
Configuration N
| Vulnerable Software | Affected Versions |
|---|---|
| Version 8.1.0.175(c01) |
| Running on/with | Platform Versions |
|---|---|
Huawei Emily Tl00b | All versions |
Configuration O
| Vulnerable Software | Affected Versions |
|---|---|
| Version 9.0.0.195(c00e195r2p1) |
| Running on/with | Platform Versions |
|---|---|
Huawei Ever Al00b | All versions |
Configuration P
| Vulnerable Software | Affected Versions |
|---|---|
| Version 9.0.0.206(c185e3r3p1) |
| Running on/with | Platform Versions |
|---|---|
Huawei Ever L29b | All versions |
Configuration Q
| Vulnerable Software | Affected Versions |
|---|---|
| Version 9.1.0.206(c00e205r3p1) |
| Running on/with | Platform Versions |
|---|---|
Huawei Harry Al00c | All versions |
Configuration R
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Huawei Harry Al10b | All versions |
Configuration S
| Vulnerable Software | Affected Versions |
|---|---|
| Version 9.0.1.162(c01e160r2p3) |
| Running on/with | Platform Versions |
|---|---|
Huawei Harry Tl00c | All versions |
Configuration T
| Vulnerable Software | Affected Versions |
|---|---|
| Version 9.0.0.200(c00e200r2p1) |
| Running on/with | Platform Versions |
|---|---|
Huawei Hima Al00b | All versions |
Configuration U
| Vulnerable Software | Affected Versions |
|---|---|
| Version 8.2.0.160(c185) |
| Running on/with | Platform Versions |
|---|---|
Huawei Jackman L21 | All versions |
Configuration V
| Vulnerable Software | Affected Versions |
|---|---|
| Version 8.2.0.156(c636r2p2) |
| Running on/with | Platform Versions |
|---|---|
Huawei Jackman L22 | All versions |
Configuration W
| Vulnerable Software | Affected Versions |
|---|---|
| Version 8.2.0.152(c45custc45d1) |
| Running on/with | Platform Versions |
|---|---|
Huawei Jackman L23 | All versions |
Configuration X
| Vulnerable Software | Affected Versions |
|---|---|
| Version 8.2.0.161(c675custc675d1) |
| Running on/with | Platform Versions |
|---|---|
Huawei Johnson Al00ic | All versions |
Configuration Y
| Vulnerable Software | Affected Versions |
|---|---|
| Version 8.2.0.165(c00r1p16) |
| Running on/with | Platform Versions |
|---|---|
Huawei Johnson Al10c | All versions |
Configuration Z
| Vulnerable Software | Affected Versions |
|---|---|
| Version 8.2.0.130(c461r1p1) |
| Running on/with | Platform Versions |
|---|---|
Huawei Johnson L21c | All versions |
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Version 8.2.0.101(c10custc10d1) |
| Running on/with | Platform Versions |
|---|---|
Huawei Johnson L21d | All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Version 8.2.0.105(c185r1p1) |
| Running on/with | Platform Versions |
|---|---|
Huawei Johnson L22c | All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Version 8.2.0.105(c185r2p1) |
| Running on/with | Platform Versions |
|---|---|
Huawei Johnson L22d | All versions |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Version 8.2.0.130(c636custc636d2) |
| Running on/with | Platform Versions |
|---|---|
Huawei Johnson L23c | All versions |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| Version 8.2.0.155(c675r2p1) |
| Running on/with | Platform Versions |
|---|---|
Huawei Johnson L42ic | All versions |
Configuration F
| Vulnerable Software | Affected Versions |
|---|---|
| Version 8.2.0.155(c675r2p1) |
| Running on/with | Platform Versions |
|---|---|
Huawei Johnson L42ie | All versions |
Configuration G
| Vulnerable Software | Affected Versions |
|---|---|
| Version 8.2.0.155(c675r2p1) |
| Running on/with | Platform Versions |
|---|---|
Huawei Johnson L42if | All versions |
Configuration H
| Vulnerable Software | Affected Versions |
|---|---|
| Version 8.2.0.100(c541custc541d1) |
| Running on/with | Platform Versions |
|---|---|
Huawei Johnson Tl00d | All versions |
Configuration I
| Vulnerable Software | Affected Versions |
|---|---|
| Version 8.2.0.100(c541custc541d1) |
| Running on/with | Platform Versions |
|---|---|
Huawei Johnson Tl00f | All versions |
Configuration J
| Vulnerable Software | Affected Versions |
|---|---|
| Version 9.0.0.201(c786e200r2p1) |
| Running on/with | Platform Versions |
|---|---|
Huawei Laya Al00ep | All versions |
Configuration K
| Vulnerable Software | Affected Versions |
|---|---|
| Version 8.1.0.175(c786) |
| Running on/with | Platform Versions |
|---|---|
Huawei Neo Al00d | All versions |
Configuration L
| Vulnerable Software | Affected Versions |
|---|---|
| Version 9.1.0.208(c00e205r3p1) |
| Running on/with | Platform Versions |
|---|---|
Huawei Potter Al00c | All versions |
Configuration M
| Vulnerable Software | Affected Versions |
|---|---|
| Version 9.1.0.208(c00e205r3p1) |
| Running on/with | Platform Versions |
|---|---|
Huawei Potter Al10a | All versions |
Configuration N
| Vulnerable Software | Affected Versions |
|---|---|
| Version 9.1.0.211(c00e203r2p2) |
| Running on/with | Platform Versions |
|---|---|
Huawei Princeton Al10b | All versions |
Configuration O
| Vulnerable Software | Affected Versions |
|---|---|
| Version 9.1.0.212(c00e204r2p2) |
| Running on/with | Platform Versions |
|---|---|
Huawei Princeton Al10d | All versions |
Configuration P
| Vulnerable Software | Affected Versions |
|---|---|
| Version 9.0.1.150(c675e9r1p4) |
| Running on/with | Platform Versions |
|---|---|
Huawei Princeton Al10i | All versions |
Configuration Q
| Vulnerable Software | Affected Versions |
|---|---|
| Version 9.1.0.211(c01e203r2p2) |
| Running on/with | Platform Versions |
|---|---|
Huawei Princeton Tl10c | All versions |
Configuration R
| Vulnerable Software | Affected Versions |
|---|---|
| Version 9.1.0.206(c00e200r2p3) |
| Running on/with | Platform Versions |
|---|---|
Huawei Tony Al00b | All versions |
Configuration S
| Vulnerable Software | Affected Versions |
|---|---|
| Version 9.1.0.206(c01e200r2p3) |
| Running on/with | Platform Versions |
|---|---|
Huawei Tony Tl00b | All versions |
Configuration T
| Vulnerable Software | Affected Versions |
|---|---|
| Version 9.1.0.162(c00e160r2p1) |
| Running on/with | Platform Versions |
|---|---|
Huawei Vogue Al00a | All versions |
Configuration U
| Vulnerable Software | Affected Versions |
|---|---|
| Version 9.1.0.12(c00r1) |
| Running on/with | Platform Versions |
|---|---|
Huawei Vogue Al00a Preload | All versions |
Configuration V
| Vulnerable Software | Affected Versions |
|---|---|
| Version 9.1.0.162(c00e160r2p1) |
| Running on/with | Platform Versions |
|---|---|
Huawei Vogue Al10c | All versions |
Configuration W
| Vulnerable Software | Affected Versions |
|---|---|
| Version 9.1.0.12(c00r1) |
| Running on/with | Platform Versions |
|---|---|
Huawei Vogue Al10c Preload | All versions |
Configuration X
| Vulnerable Software | Affected Versions |
|---|---|
| Version 9.1.0.162(c01e160r2p1) |
| Running on/with | Platform Versions |
|---|---|
Huawei Vogue Tl00b | All versions |
Related CWEs
References (2)
Source: psirt@huawei.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Timeline
No history available yet.