First published: Mon Jul 06 2020(Updated: )
HUAWEI Mate 30 with versions earlier than 10.1.0.150(C00E136R5P3) have a use after free vulnerability. There is a condition exists that the system would reference memory after it has been freed, the attacker should trick the user into running a crafted application with high privilege, successful exploit could cause code execution.
Credit: psirt@huawei.com
Affected Software | Affected Version | How to fix |
---|---|---|
huawei mate 30 firmware | <10.1.0.150\(c00e136r5p3\) | |
HUAWEI Mate 30 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2020-9262.
The severity of CVE-2020-9262 is high with a score of 7.8.
The vulnerability CVE-2020-9262 affects Huawei Mate 30 with versions earlier than 10.1.0.150(C00E136R5P3).
CVE-2020-9262 allows an attacker to trick the user into running a crafted application with high privilege, leading to unauthorized access and potential system compromise.
To fix the vulnerability CVE-2020-9262, update your Huawei Mate 30 device to version 10.1.0.150(C00E136R5P3) or later.