CVE-2019-5266
Summary
| CVE | CVE-2019-5266 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2019-12-23 18:15:00 UTC |
| Updated | 2019-12-27 21:00:00 UTC |
| Description | Huawei Share function in P30 9.1.0.193(C00E190R2P1) smartphone has an insufficient input validation vulnerability. Attackers can exploit this vulnerability by sending crafted packets to the affected device. Successful exploit may cause the function will be disabled. |
Risk And Classification
Problem Types: CWE-20
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Huawei | P30 | - | All | All | All |
| Hardware | Huawei | P30 | - | All | All | All |
| Operating System | Huawei | P30 Firmware | 9.1.0.193(c00e190r2p1) | All | All | All |
| Operating System | Huawei | P30 Firmware | 9.1.0.193\(c00e190r2p1\) | All | All | All |
| Operating System | Huawei | P30 Firmware | 9.1.0.193\(c00e190r2p1\) | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Security Advisory - Insufficient Input Validation Vulnerability in Huawei Share | CONFIRM | www.huawei.com | Vendor Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.