Vulnerabilities > Huawei > P30 Firmware

DATE CVE VULNERABILITY TITLE RISK
2019-11-29 CVE-2019-5227 Origin Validation Error vulnerability in Huawei products
P30, P30 Pro, Mate 20 smartphones with software of versions earlier than ELLE-AL00B 9.1.0.193(C00E190R2P1), versions earlier than VOGUE-AL00A 9.1.0.193(C00E190R2P1), versions earlier than Hima-AL00B 9.1.0.135(C00E133R2P1) and HiSuite with versions earlier than HiSuite 9.1.0.305 have a version downgrade vulnerability.
local
low complexity
huawei CWE-346
5.5
2019-11-29 CVE-2019-5225 Classic Buffer Overflow vulnerability in Huawei P30 Firmware
P30, Mate 20, P30 Pro smartphones with software of versions earlier than ELLE-AL00B 9.1.0.193(C00E190R1P21), versions earlier than Hima-AL00B 9.1.0.135(C00E200R2P1), versions earlier than VOGUE-AL00A 9.1.0.193(C00E190R1P12) have a buffer overflow vulnerability on several , the system does not properly validate certain length parameter which an application transports to kernel.
local
low complexity
huawei CWE-120
7.8
2019-11-29 CVE-2019-5224 Out-of-bounds Read vulnerability in Huawei P30 Firmware
P30 smartphones with versions earlier than ELLE-AL00B 9.1.0.193(C00E190R1P21) have an out of bounds read vulnerability.
local
low complexity
huawei CWE-125
5.5
2019-11-29 CVE-2019-5226 Origin Validation Error vulnerability in Huawei products
P30, P30 Pro, Mate 20 smartphones with software of versions earlier than ELLE-AL00B 9.1.0.193(C00E190R2P1), versions earlier than VOGUE-AL00A 9.1.0.193(C00E190R2P1), versions earlier than Hima-AL00B 9.1.0.135(C00E133R2P1) and HiSuite with versions earlier than HiSuite 9.1.0.305 have a version downgrade vulnerability.
local
low complexity
huawei CWE-346
5.5
2019-11-13 CVE-2019-5288 Integer Overflow or Wraparound vulnerability in Huawei P30 Firmware
P30 smart phones with versions earlier than ELLE-AL00B 9.1.0.193(C00E190R2P1) have an integer overflow vulnerability due to insufficient check on specific parameters.
local
low complexity
huawei CWE-190
7.8
2019-11-13 CVE-2019-5287 Integer Overflow or Wraparound vulnerability in Huawei P30 Firmware
P30 smart phones with versions earlier than ELLE-AL00B 9.1.0.193(C00E190R2P1) have an integer overflow vulnerability due to insufficient check on specific parameters.
local
low complexity
huawei CWE-190
7.8
2019-11-13 CVE-2019-5231 Incorrect Authorization vulnerability in Huawei P30 Firmware
P30 smartphones with versions earlier than ELLE-AL00B 9.1.0.186(C00E180R2P1) have an improper authorization vulnerability.
low complexity
huawei CWE-863
4.6
2019-11-12 CVE-2019-5229 Insufficient Verification of Data Authenticity vulnerability in Huawei P30 Firmware
P30 smartphones with versions earlier than ELLE-AL00B 9.1.0.193(C00E190R2P1) have an insufficient verification vulnerability.
low complexity
huawei CWE-345
6.2
2019-11-12 CVE-2019-5228 Out-of-bounds Write vulnerability in Huawei P30 Firmware
Certain detection module of P30, P30 Pro, Honor V20 smartphone whith Versions earlier than ELLE-AL00B 9.1.0.193(C00E190R1P21), Versions earlier than VOGUE-AL00A 9.1.0.193(C00E190R1P12), Versions earlier than Princeton-AL10B 9.1.0.233(C00E233R4P3) have a race condition vulnerability.
local
low complexity
huawei CWE-787
7.8
2019-08-14 CVE-2019-9506 Use of a Broken or Risky Cryptographic Algorithm vulnerability in multiple products
The Bluetooth BR/EDR specification up to and including version 5.1 permits sufficiently low encryption key length and does not prevent an attacker from influencing the key length negotiation.
8.1