HUAWEI Mate 20 versions earlier than 10.0.0.188(C00E74R3P8) have a buffer overflow vulnerability in the Bluetooth module. Due to insufficient input validation, an unauthenticated attacker may craft Bluetooth messages after successful paring, causing buffer overflow. Successful exploit may cause code execution.
References
Link | Resource |
---|---|
https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20201014-01-bluetooth-en | Vendor Advisory |
https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20201014-01-bluetooth-en | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
History
21 Nov 2024, 05:40
Type | Values Removed | Values Added |
---|---|---|
References | () https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20201014-01-bluetooth-en - Vendor Advisory |
Information
Published : 2020-10-19 20:15
Updated : 2024-11-21 05:40
NVD link : CVE-2020-9113
Mitre link : CVE-2020-9113
CVE.ORG link : CVE-2020-9113
JSON object : View
Products Affected
huawei
- mate_20
- mate_20_firmware
CWE
CWE-120
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')