CVE-2019-5292
Summary
| CVE | CVE-2019-5292 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2019-11-13 16:15:00 UTC |
| Updated | 2020-08-24 17:37:00 UTC |
| Description | Honor 10 Lite, Honor 8A, Huawei Y6 mobile phones with the versions before 9.1.0.217(C00E215R3P1), the versions before 9.1.0.205(C00E97R1P9), the versions before 9.1.0.205(C00E97R2P2) have an information leak vulnerability. Due to improper function error records of some module, an attacker with the access permission may exploit the vulnerability to obtain some information. |
Risk And Classification
Problem Types: NVD-CWE-noinfo
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Huawei | Honor 10 Lite | - | All | All | All |
| Hardware | Huawei | Honor 10 Lite | - | All | All | All |
| Operating System | Huawei | Honor 10 Lite Firmware | All | All | All | All |
| Operating System | Huawei | Honor 10 Lite Firmware | All | All | All | All |
| Hardware | Huawei | Honor 8a | - | All | All | All |
| Hardware | Huawei | Honor 8a | - | All | All | All |
| Operating System | Huawei | Honor 8a Firmware | All | All | All | All |
| Operating System | Huawei | Honor 8a Firmware | All | All | All | All |
| Hardware | Huawei | Huawei Y6 | - | All | All | All |
| Hardware | Huawei | Huawei Y6 | - | All | All | All |
| Operating System | Huawei | Huawei Y6 Firmware | All | All | All | All |
| Operating System | Huawei | Huawei Y6 Firmware | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Security Advisory - Information Leak Vulnerability in Some Huawei Products | MISC | www.huawei.com | Vendor Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.