CVE-2019-5226: Medium severity huawei p30 vulnerability
P30, P30 Pro, Mate 20 smartphones with software of versions earlier than ELLE-AL00B 9.1.0.193(C00E190R2P1), versions earlier than VOGUE-AL00A 9.1.0.193(C00E190R2P1), versions earlier than Hima-AL00B 9.1.0.135(C00E133R2P1) and HiSuite with versions earlier than HiSuite 9.1.0.305 have a version downgrade vulnerability. The device and HiSuite software do not validate the upgrade package sufficiently, so that the system of smartphone can be downgraded to an older version.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2019-5226?
The severity of CVE-2019-5226 is medium, with a severity value of 5.5.
Which Huawei smartphones are affected by CVE-2019-5226?
Huawei P30, P30 Pro, and Mate 20 smartphones with software versions earlier than ELLE-AL00B 9.1.0.193(C00E190R2P1), VOGUE-AL00A 9.1.0.193(C00E190R2P1), and Hima-AL00B 9.1.0.135(C00E133R2P1) are affected by CVE-2019-5226.
Which Huawei smartphones are not vulnerable to CVE-2019-5226?
HUAWEI P30, HUAWEI P30 Pro, and HUAWEI Mate 20 smartphones are not vulnerable to CVE-2019-5226.
How do I fix CVE-2019-5226?
To fix CVE-2019-5226, update your Huawei P30, P30 Pro, or Mate 20 smartphone to software version ELLE-AL00B 9.1.0.193(C00E190R2P1), VOGUE-AL00A 9.1.0.193(C00E190R2P1), or Hima-AL00B 9.1.0.135(C00E133R2P1) respectively.
Where can I find more information about CVE-2019-5226?
You can find more information about CVE-2019-5226 on Huawei's official security advisory page: [Huawei SA-20190904-01].