CVE-2017-2691

Huawei P9 versions earlier before EVA-AL10C00B373, versions earlier before EVA-CL00C92B373, versions earlier before EVA-DL00C17B373, versions earlier before EVA-TL00C01B373 have a lock-screen bypass vulnerability. An unauthenticated attacker could force the phone to the fastboot mode and delete the user's password file during the reboot process, then login the phone without screen lock password after reboot.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:huawei:p9_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:huawei:p9:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:huawei:p9_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:huawei:p9:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:huawei:p9_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:huawei:p9:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:huawei:p9_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:huawei:p9:-:*:*:*:*:*:*:*

History

21 Nov 2024, 03:23

Type Values Removed Values Added
References () http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20170118-01-smartphone-en - Issue Tracking, Vendor Advisory () http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20170118-01-smartphone-en - Issue Tracking, Vendor Advisory
References () http://www.securityfocus.com/bid/95658 - Third Party Advisory, VDB Entry () http://www.securityfocus.com/bid/95658 - Third Party Advisory, VDB Entry

Information

Published : 2017-11-22 19:29

Updated : 2024-11-21 03:23


NVD link : CVE-2017-2691

Mitre link : CVE-2017-2691

CVE.ORG link : CVE-2017-2691


JSON object : View

Products Affected

huawei

  • p9_firmware
  • p9