First published: Sun Apr 02 2017(Updated: )
The TrustZone driver in Huawei P9 phones with software Versions earlier than EVA-AL10C00B352 and P9 Lite with software VNS-L21C185B130 and earlier versions and P8 Lite with software ALE-L02C636B150 and earlier versions has an improper resource release vulnerability, which allows attackers to cause a system restart or privilege elevation.
Credit: psirt@huawei.com
Affected Software | Affected Version | How to fix |
---|---|---|
Huawei P9 Firmware | ||
Huawei P9 Firmware | ||
Huawei P9 Lite Firmware | <=vns-l21c185b130 | |
Huawei P9 Lite Firmware | ||
Huawei P8 Lite Firmware | <=ale-l02c636b150 | |
Huawei P8 Lite Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-8763 is classified as a high severity vulnerability due to its potential to allow attackers to exploit improper resource release.
To mitigate CVE-2016-8763, update Huawei P9, P9 Lite, and P8 Lite devices to the latest firmware versions that are not vulnerable.
CVE-2016-8763 affects Huawei P9, P9 Lite, and P8 Lite devices with specific older firmware versions.
CVE-2016-8763 is classified as an improper resource release vulnerability.
CVE-2016-8763 could be exploited by attackers with access to the affected devices, potentially leading to further malicious actions.