CVE-2019-5296: Low severity huawei mate 20 firmware vulnerability
Mate20 Huawei smartphones versions earlier than HMA-AL00C00B175 have an out-of-bounds read vulnerability. An attacker with a high permission runs some specific commands on the smartphone. Due to insufficient input verification, successful exploit may cause out-of-bounds read of the memory and the system abnormal.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2019-5296?
CVE-2019-5296 has a medium severity rating due to the potential for an attacker to exploit an out-of-bounds read vulnerability.
How do I fix CVE-2019-5296?
To fix CVE-2019-5296, update your Huawei Mate 20 smartphone to the firmware version HMA-AL00C00B175 or later.
Who is affected by CVE-2019-5296?
CVE-2019-5296 affects Huawei Mate 20 smartphones running firmware versions earlier than HMA-AL00C00B175.
What could happen if CVE-2019-5296 is exploited?
If CVE-2019-5296 is exploited, it may lead to an out-of-bounds read of the smartphone's memory, potentially exposing sensitive information.
Is CVE-2019-5296 a local or remote vulnerability?
CVE-2019-5296 is considered a local vulnerability as it requires an attacker with high permissions to execute specific commands on the device.