CVE-2020-9125: Medium severity huawei mate 30 vulnerability
There is an out-of-bound read vulnerability in huawei smartphone Mate 30 versions earlier than 10.1.0.156 (C00E155R7P2). An attacker with specific permission can exploit this vulnerability by sending crafted packet with specific parameter to the target device. Due to insufficient validation of the parameter, successful exploit can cause the device to behave abnormally.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-9125?
CVE-2020-9125 is an out-of-bound read vulnerability in huawei smartphone Mate 30 versions earlier than 10.1.0.156 (C00E155R7P2).
How can an attacker exploit CVE-2020-9125?
An attacker with specific permission can exploit this vulnerability by sending crafted packet with specific parameter to the target device.
What is the severity of CVE-2020-9125?
The severity of CVE-2020-9125 is medium with a CVSS score of 6.7.
Which Huawei smartphone models are affected by CVE-2020-9125?
Huawei smartphone Mate 30 versions earlier than 10.1.0.156 (C00E155R7P2) are affected by CVE-2020-9125.
How can I fix CVE-2020-9125?
To fix CVE-2020-9125, it is recommended to update the Huawei Mate 30 firmware to version 10.1.0.156 (C00E155R7P2) or later.