CVE-2018-7906: Input Validation
Some Huawei smart phones with software of Leland-AL00 8.0.0.114(C636), Leland-AL00A 8.0.0.171(C00) have a denial of service (DoS) vulnerability. An attacker can trick a user to install a malicious application to exploit this vulnerability. Due to insufficient verification of the parameter, successful exploitation can cause the smartphone black screen until restarting the phone.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2018-7906?
CVE-2018-7906 has been classified as a denial of service (DoS) vulnerability.
How can I fix CVE-2018-7906?
To fix CVE-2018-7906, ensure your Huawei device is updated to the latest firmware version provided by Huawei.
What devices are affected by CVE-2018-7906?
CVE-2018-7906 affects Huawei smartphones running Leland-AL00 firmware version 8.0.0.114(C636) and Leland-AL00A 8.0.0.171(C00).
What is the exploitation method for CVE-2018-7906?
CVE-2018-7906 can be exploited by tricking a user into installing a malicious application.
What are the consequences of CVE-2018-7906?
Exploitation of CVE-2018-7906 can lead to a denial of service on the affected Huawei devices.