First published: Thu May 10 2018(Updated: )
Huawei smart phones Mate 10 and Mate 10 Pro with earlier versions than 8.0.0.129(SP2C00) and earlier versions than 8.0.0.129(SP2C01) have an authentication bypass vulnerability. An attacker with high privilege obtains the smart phone and bypass the activation function by some specific operations.
Credit: psirt@huawei.com
Affected Software | Affected Version | How to fix |
---|---|---|
Huawei Mate 9 Firmware | <8.0.0.129\(sp2c00\) | |
Huawei Mate 9 | ||
Huawei Mate 9 Pro Firmware | <8.0.0.129\(sp2c01\) | |
Huawei Mate 9 Pro |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this Huawei smart phone vulnerability is CVE-2018-7940.
Huawei smart phones Mate 10 and Mate 10 Pro with earlier versions than 8.0.0.129(SP2C00) and earlier versions than 8.0.0.129(SP2C01) are affected by this vulnerability.
The severity of CVE-2018-7940 is high.
An attacker with high privilege can obtain the smart phone and bypass the activation function by performing specific operations.
Please refer to the Huawei security advisory for information on available fixes.