First published: Sun Apr 02 2017(Updated: )
Huawei P9 phones with software EVA-AL10C00,EVA-CL10C00,EVA-DL10C00,EVA-TL10C00 and P9 Lite phones with software VNS-L21C185 allow attackers to bypass the factory reset protection (FRP) to enter some functional modules without authorization and perform operations to update the Google account.
Credit: psirt@huawei.com
Affected Software | Affected Version | How to fix |
---|---|---|
Huawei P9 Firmware | =eva-al10c00 | |
Huawei P9 Firmware | =eva-cl10c00 | |
Huawei P9 Firmware | =eva-dl10c00 | |
Huawei P9 Firmware | =eva-tl10c00 | |
Huawei P9 Firmware | ||
Huawei P9 Lite Firmware | =vns-l21c185 | |
Huawei P9 Lite Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-8776 has a moderate severity level due to its ability to bypass factory reset protection on affected Huawei devices.
To fix CVE-2016-8776, users should update their Huawei P9 or P9 Lite devices to the latest firmware version provided by Huawei.
CVE-2016-8776 affects certain models of Huawei P9 and P9 Lite with specified firmware versions.
The risks associated with CVE-2016-8776 include unauthorized access to functional modules and the ability to update Google accounts without permission.
CVE-2016-8776 is a known vulnerability that specifically impacts users of the identified Huawei models, making it important for affected users to address it promptly.