Vulnerabilities > Huawei > Mate 9 Firmware

DATE CVE VULNERABILITY TITLE RISK
2017-11-22 CVE-2017-8142 Use After Free vulnerability in Huawei Mate 9 Firmware and Mate 9 PRO Firmware
The Trusted Execution Environment (TEE) module driver of Mate 9 and Mate 9 Pro smart phones with software versions earlier than MHA-AL00BC00B221 and versions earlier than LON-AL00BC00B221 has a use after free (UAF) vulnerability.
local
low complexity
huawei CWE-416
7.8
2017-11-22 CVE-2017-2716 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Huawei Mate 9 Firmware
The camerafs driver in Mate 9 Versions earlier than MHA-AL00BC00B173 has buffer overflow vulnerability.
local
low complexity
huawei CWE-119
7.8
2017-11-22 CVE-2017-2707 Download of Code Without Integrity Check vulnerability in Huawei Mate 9 Firmware
Mate 9 smartphones with software MHA-AL00AC00B125 have a privilege escalation vulnerability in Push module.
local
low complexity
huawei CWE-494
7.1
2017-11-22 CVE-2017-2706 Path Traversal vulnerability in Huawei Mate 9 Firmware
Mate 9 smartphones with software MHA-AL00AC00B125 have a directory traversal vulnerability in Push module.
local
low complexity
huawei CWE-22
7.1
2017-11-22 CVE-2017-2703 Unspecified vulnerability in Huawei Mate 9 Firmware and P9 Firmware
Phone Finder in versions earlier before MHA-AL00BC00B156,Versions earlier before MHA-CL00BC00B156,Versions earlier before MHA-DL00BC00B156,Versions earlier before MHA-TL00BC00B156,Versions earlier before EVA-AL10C00B373,Versions earlier before EVA-CL10C00B373,Versions earlier before EVA-DL10C00B373,Versions earlier before EVA-TL10C00B373 can be bypass.
low complexity
huawei
6.8
2017-11-22 CVE-2017-2702 Unspecified vulnerability in Huawei Mate 9 Firmware
Phone Finder in versions earlier before MHA-AL00C00B170 can be bypass.
low complexity
huawei
6.8
2017-11-22 CVE-2017-2701 Insufficient Verification of Data Authenticity vulnerability in Huawei Mate 9 Firmware Mhaal00Ac00B125
Mate 9 with software MHA-AL00AC00B125 has a denial of service (DoS) vulnerability.
local
low complexity
huawei CWE-345
3.3