First published: Fri Aug 21 2020(Updated: )
HUAWEI P30 Pro smartphone with Versions earlier than 10.1.0.160(C00E160R2P8) has an integer overflow vulnerability. Some functions are lack of verification when they process some messages sent from other module. Attackers can exploit this vulnerability by send malicious message to cause integer overflow. This can compromise normal service.
Credit: psirt@huawei.com
Affected Software | Affected Version | How to fix |
---|---|---|
Huawei P30 Pro Firmware | <10.1.0.160\(c00e160r2p8\) | |
HUAWEI P30 Pro |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-9095 is an integer overflow vulnerability in the HUAWEI P30 Pro smartphone with versions earlier than 10.1.0.160(C00E160R2P8).
The severity of CVE-2020-9095 is medium with a CVSS score of 5.5.
CVE-2020-9095 affects HUAWEI P30 Pro smartphones with versions earlier than 10.1.0.160(C00E160R2P8) by allowing attackers to exploit an integer overflow vulnerability through malicious messages.
To fix CVE-2020-9095, update your HUAWEI P30 Pro smartphone to version 10.1.0.160(C00E160R2P8) or later.
You can find more information about CVE-2020-9095 in the Huawei security advisory at https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20200819-03-smartphone-en.