CVE-2020-9256: Medium severity huawei mate 30 pro firmware vulnerability
Huawei Mate 30 Pro smartphones with versions earlier than 10.1.0.150(C00E136R5P3) have an improper authorization vulnerability. The system does not properly restrict the use of system service by applications, the attacker should trick the user into installing a malicious application, successful exploit could cause a denial of audio service.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-9256?
CVE-2020-9256 is an improper authorization vulnerability found in Huawei Mate 30 Pro smartphones with versions earlier than 10.1.0.150(C00E136R5P3).
How can an attacker exploit CVE-2020-9256?
An attacker can exploit CVE-2020-9256 by tricking the user into installing a malicious application that takes advantage of the improper authorization vulnerability.
What is the severity of CVE-2020-9256?
CVE-2020-9256 has a severity rating of medium, with a score of 6.5.
Which Huawei Mate 30 Pro smartphones are affected by CVE-2020-9256?
Huawei Mate 30 Pro smartphones with versions earlier than 10.1.0.150(C00E136R5P3) are affected by CVE-2020-9256.
How can I fix CVE-2020-9256?
To fix CVE-2020-9256, users should update their Huawei Mate 30 Pro smartphones to version 10.1.0.150(C00E136R5P3) or later.