First published: Thu Jun 18 2020(Updated: )
HUAWEI P30 and HUAWEI P30 Pro with versions earlier than 10.1.0.135(C00E135R2P11) and versions earlier than 10.1.0.135(C00E135R2P8) have an insufficient integrity check vulnerability. The system does not check certain software package's integrity sufficiently. Successful exploit could allow an attacker to load a crafted software package to the device.
Credit: psirt@huawei.com
Affected Software | Affected Version | How to fix |
---|---|---|
Huawei P30 Firmware | <10.1.0.135\(c00e135r2p11\) | |
HUAWEI P30 | ||
Huawei P30 Pro Firmware | <10.1.0.135\(c00e135r2p8\) | |
HUAWEI P30 Pro |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2020-1834.
The severity of CVE-2020-1834 is medium with a score of 4.6.
HUAWEI P30 and HUAWEI P30 Pro with versions earlier than 10.1.0.135(C00E135R2P11) and versions earlier than 10.1.0.135(C00E135R2P8) are affected by CVE-2020-1834.
Successful exploit of CVE-2020-1834 could allow an attacker to bypass certain software package integrity checks.
To fix CVE-2020-1834, update your device to version 10.1.0.135(C00E135R2P11) or later for HUAWEI P30, and version 10.1.0.135(C00E135R2P8) or later for HUAWEI P30 Pro.