CVE-2017-2691: High severity huawei p9 firmware vulnerability
Huawei P9 versions earlier before EVA-AL10C00B373, versions earlier before EVA-CL00C92B373, versions earlier before EVA-DL00C17B373, versions earlier before EVA-TL00C01B373 have a lock-screen bypass vulnerability. An unauthenticated attacker could force the phone to the fastboot mode and delete the user's password file during the reboot process, then login the phone without screen lock password after reboot.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID of this vulnerability?
The vulnerability ID is CVE-2017-2691.
What is the severity rating of CVE-2017-2691?
The severity rating of CVE-2017-2691 is high.
Which Huawei P9 versions are affected by CVE-2017-2691?
Huawei P9 versions earlier before EVA-AL10C00B373, EVA-CL00C92B373, EVA-DL00C17B373, and EVA-TL00C01B373 are affected by CVE-2017-2691.
How can an attacker exploit CVE-2017-2691?
An unauthenticated attacker can force the Huawei P9 phone to fastboot mode and delete data.
Where can I find more information about CVE-2017-2691?
You can find more information about CVE-2017-2691 on Huawei's official security advisories page and the SecurityFocus website.