CVE-2017-2726: Buffer Overflow
Bastet in P10 Plus and P10 smart phones with software earlier than VKY-AL00C00B123 versions, earlier than VTR-AL00C00B123 versions have a buffer overflow vulnerability. An attacker with the root privilege of an Android system may trick a user into installing a malicious APP. The APP can modify specific data to cause buffer overflow in the next system reboot, causing continuous system reboot or arbitrary code execution.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2017-2726?
CVE-2017-2726 is a vulnerability that affects Huawei P10 Plus and P10 smart phones with software earlier than VKY-AL00C00B123 versions, earlier than VTR-AL00C00B123 versions.
How severe is CVE-2017-2726?
CVE-2017-2726 has a severity score of 8.4 out of 10, making it critical.
What is the vulnerability in CVE-2017-2726?
CVE-2017-2726 is a buffer overflow vulnerability that can be exploited by an attacker with root privilege to trick a user into installing a malicious APP.
Which devices are affected by CVE-2017-2726?
Huawei P10 Plus and P10 smart phones with software earlier than VKY-AL00C00B123 versions, earlier than VTR-AL00C00B123 versions are vulnerable to CVE-2017-2726.
How can I mitigate CVE-2017-2726?
To mitigate CVE-2017-2726, ensure that you have the latest software version VKY-AL00C00B123 for Huawei P10 Plus or VTR-AL00C00B123 for Huawei P10 installed on your device.