CVE-2020-9138: Buffer Overflow
Published Jan 13, 2021
·Updated
There is a heap-based buffer overflow vulnerability in some Huawei Smartphone, Successful exploit of this vulnerability can cause process exceptions during updating.
Affected Software
9 affected components
Huawei Emui=9.1.0
Huawei Emui=9.1.1
Huawei Emui=10.0.0
Huawei Emui=10.1.0
Huawei Emui=10.1.1
Huawei Magic Ui=2.1.1
Huawei Magic Ui=3.0.0
Huawei Magic Ui=3.1.0
Huawei Magic Ui=3.1.1
Event History
Jan 13, 2021
CVE Published
via MITRE·10:00 PM
Data Sourced
via MITRE·10:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2020-9138?
The severity of CVE-2020-9138 is classified as high due to the risk of heap-based buffer overflow leading to process exceptions.
2
How do I fix CVE-2020-9138?
To fix CVE-2020-9138, update your Huawei device to the latest version of EMUI or Magic UI that addresses this vulnerability.
3
Which Huawei devices are affected by CVE-2020-9138?
CVE-2020-9138 affects Huawei devices running specific versions of EMUI from 9.1.0 to 10.1.1 and Magic UI from 2.1.1 to 3.1.1.
4
What type of vulnerability is CVE-2020-9138?
CVE-2020-9138 is a heap-based buffer overflow vulnerability.
5
What could happen if CVE-2020-9138 is exploited?
Exploitation of CVE-2020-9138 could result in process exceptions during software updates on affected Huawei devices.