First published: Thu Mar 12 2020(Updated: )
Huawei smartphone Honor V30 with versions earlier than OxfordS-AN00A 10.0.1.167(C00E166R4P1) have an improper authentication vulnerability. Authentication to target component is improper when device performs an operation. Attackers exploit this vulnerability to obtain some information by loading malicious application, leading to information leak.
Credit: psirt@huawei.com
Affected Software | Affected Version | How to fix |
---|---|---|
Huawei Honor V30 Firmware | <=oxfords-an00a_10.0.1.167\(c00e166r4p1\) | |
Huawei Honor V30 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this Huawei smartphone vulnerability is CVE-2020-9064.
The severity rating of CVE-2020-9064 is 5.5 (medium).
Huawei smartphones with Honor V30 firmware versions earlier than OxfordS-AN00A 10.0.1.167(C00E166R4P1) are affected by CVE-2020-9064.
CVE-2020-9064 allows attackers to obtain information by exploiting an improper authentication vulnerability on Huawei Honor V30 smartphones.
To fix the CVE-2020-9064 vulnerability, you should update your Huawei Honor V30 firmware to version OxfordS-AN00A 10.0.1.167(C00E166R4P1) or later.