CVE-2015-8318: Buffer Overflow

Published Apr 7, 2016
·
Updated

Heap-based buffer overflow in the HIFI driver in Huawei P8 smartphones with software GRA-TL00 before GRA-TL00C01B230, GRA-CL00 before GRA-CL00C92B230, GRA-CL10 before GRA-CL10C92B230, GRA-UL00 before GRA-UL00C00B230, and GRA-UL10 before GRA-UL10C00B230, and Mate S smartphones with software CRR-TL00 before CRR-TL00C01B160SP01, CRR-UL00 before CRR-UL00C00B160, and CRR-CL00 before CRR-CL00C92B161 allows attackers to cause a denial of service (system crash) or gain privileges via a crafted application, a different vulnerability than CVE-2015-8319.

Affected Software

10 affected components
Huawei P8
Huawei P8 Firmware=gra-cl00
Huawei P8 Firmware=gra-cl10
Huawei P8 Firmware=gra-tl00
Huawei P8 Firmware=gra-ul00
Huawei P8 Firmware=gra-ul10
Huawei Mate S
Huawei Mate S Firmware=crr-cl00
Huawei Mate S Firmware=crr-tl00
Huawei Mate S Firmware=crr-ul00

Event History

Apr 7, 2016
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
Description
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is the severity of CVE-2015-8318?

CVE-2015-8318 is classified as a high severity vulnerability due to its potential to lead to remote code execution.

2

How do I fix CVE-2015-8318?

To fix CVE-2015-8318, users should update their Huawei P8 or Mate S smartphones to the latest software versions specified in the advisory.

3

Which devices are affected by CVE-2015-8318?

CVE-2015-8318 affects certain versions of Huawei P8 and Mate S smartphones with specific firmware versions.

4

What type of vulnerability is CVE-2015-8318?

CVE-2015-8318 is a heap-based buffer overflow vulnerability in the HIFI driver of affected smartphones.

5

Is my Huawei smartphone vulnerable if it has a newer firmware than specified?

If your Huawei smartphone's firmware version is newer than the versions specified in CVE-2015-8318, it should not be vulnerable.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203