Vulnerabilities > Huawei > Mate 9 PRO Firmware > Medium

DATE CVE VULNERABILITY TITLE RISK
2019-06-04 CVE-2019-5217 Improper Restriction of Excessive Authentication Attempts vulnerability in Huawei Mate 9 PRO Firmware
There is an information disclosure vulnerability on Mate 9 Pro Huawei smartphones versions earlier than LON-AL00B9.0.1.150 (C00E61R1P8T8).
low complexity
huawei CWE-307
4.6
2018-11-27 CVE-2018-7988 Incorrect Authorization vulnerability in Huawei Mate 9 PRO Firmware and Nova 2 Plus Firmware
There is a Factory Reset Protection (FRP) bypass vulnerability on several smartphones.
low complexity
huawei CWE-863
4.6
2018-10-17 CVE-2017-17176 Out-of-bounds Write vulnerability in Huawei Mate 9 Firmware and Mate 9 PRO Firmware
The hardware security module of Mate 9 and Mate 9 Pro Huawei smart phones with the versions earlier before MHA-AL00BC00B156, versions earlier before MHA-CL00BC00B156, versions earlier before MHA-DL00BC00B156, versions earlier before MHA-TL00BC00B156, versions earlier before LON-AL00BC00B156, versions earlier before LON-CL00BC00B156, versions earlier before LON-DL00BC00B156, versions earlier before LON-TL00BC00B156 has a arbitrary memory read/write vulnerability due to the input parameters validation.
local
low complexity
huawei CWE-787
6.7
2018-07-31 CVE-2018-7992 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Huawei products
Mdapt Driver of Huawei MediaPad M3 BTV-W09C128B353CUSTC128D001; Mate 9 Pro versions earlier than 8.0.0.356(C00); P10 Plus versions earlier than 8.0.0.357(C00) has a buffer overflow vulnerability.
local
low complexity
huawei CWE-119
5.5
2018-05-10 CVE-2018-7940 Improper Authentication vulnerability in Huawei Mate 9 Firmware and Mate 9 PRO Firmware
Huawei smart phones Mate 10 and Mate 10 Pro with earlier versions than 8.0.0.129(SP2C00) and earlier versions than 8.0.0.129(SP2C01) have an authentication bypass vulnerability.
low complexity
huawei CWE-287
6.2
2018-03-09 CVE-2017-17279 Unspecified vulnerability in Huawei Mate 9 PRO Firmware
The soundtrigger module in Huawei Mate 9 Pro smart phones with software of the versions before LON-AL00B 8.0.0.343(C00) has an authentication bypass vulnerability due to the improper design of the module.
local
low complexity
huawei
5.5
2018-03-05 CVE-2017-17139 Information Exposure vulnerability in Huawei Mate 9 Firmware and Mate 9 PRO Firmware
Huawei Mate 9 and Mate 9 pro smart phones with software the versions before MHA-AL00B 8.0.0.334(C00); the versions before LON-AL00B 8.0.0.334(C00) have a information leak vulnerability in the date service proxy implementation.
local
low complexity
huawei CWE-200
5.5
2018-02-15 CVE-2017-15347 Use After Free vulnerability in Huawei Mate 9 PRO Firmware Lonal00Bc00B235
Huawei Mate 9 Pro mobile phones with software of versions earlier than LON-AL00BC00B235 have a use after free (UAF) vulnerability.
local
low complexity
huawei CWE-416
5.5
2017-11-22 CVE-2017-8144 Improper Restriction of Power Consumption vulnerability in Huawei products
Honor 5A,Honor 8 Lite,Mate9,Mate9 Pro,P10,P10 Plus Huawei smartphones with software the versions before CAM-L03C605B143CUSTC605D003,the versions before Prague-L03C605B161,the versions before Prague-L23C605B160,the versions before MHA-AL00C00B225,the versions before LON-AL00C00B225,the versions before VTR-AL00C00B167,the versions before VTR-TL00C01B167,the versions before VKY-AL00C00B167,the versions before VKY-TL00C01B167 have a resource exhaustion vulnerability due to configure setting.
local
low complexity
huawei CWE-920
5.5