CVE-2017-17280

NFC (Near Field Communication) module in Huawei mobile phones with software LON-AL00BC00 has an information leak vulnerability. The attacker has to trick a user to do some specific operations and then craft the NFC message to exploit this vulnerability. Successful exploit will cause some information leak.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:huawei:lon-al00b_firmware:lon-al00bc00:*:*:*:*:*:*:*
cpe:2.3:h:huawei:lon-al00b:-:*:*:*:*:*:*:*

History

21 Nov 2024, 03:17

Type Values Removed Values Added
References () http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20180307-01-phone-en - Vendor Advisory () http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20180307-01-phone-en - Vendor Advisory

Information

Published : 2018-03-09 17:29

Updated : 2024-11-21 03:17


NVD link : CVE-2017-17280

Mitre link : CVE-2017-17280

CVE.ORG link : CVE-2017-17280


JSON object : View

Products Affected

huawei

  • lon-al00b_firmware
  • lon-al00b
CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor