First published: Wed Nov 22 2017(Updated: )
HUAWEI P9 smartphones with software versions earlier before EVA-L09C432B383, versions earlier before EVA-L09C636B380, versions earlier before VIE-L09C432B370, versions earlier before VIE-L29C636B370 have an insufficient input validation vulnerability. An attacker could exploit this vulnerability to tamper with air interface signaling messages and obtain some communication information.
Credit: psirt@huawei.com
Affected Software | Affected Version | How to fix |
---|---|---|
Huawei P9 Firmware | <eva-l09c432b383 | |
Huawei P9 | ||
Huawei P9 Firmware | <eva-l09c636b380 | |
Huawei P9 Firmware | <vie-l09c432b370 | |
Huawei P9 Firmware | <vie-l29c636b370 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2017-2713.
The severity of CVE-2017-2713 is medium, with a severity value of 5.4.
HUAWEI P9 smartphones with software versions earlier before EVA-L09C432B383, versions earlier before EVA-L09C636B380, versions earlier before VIE-L09C432B370, versions earlier before VIE-L29C636B370 are affected.
An attacker could exploit this vulnerability to perform unauthorized actions or gain elevated privileges on the affected Huawei P9 smartphones.
Yes, you should update your Huawei P9 smartphone to software versions EVA-L09C432B383, EVA-L09C636B380, VIE-L09C432B370, or VIE-L29C636B370 to fix this vulnerability.