CVE-2021-22327
Summary
| CVE | CVE-2021-22327 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2021-04-28 12:15:00 UTC |
| Updated | 2021-05-08 04:21:00 UTC |
| Description | There is an arbitrary memory write vulnerability in Huawei smart phone when processing file parsing. Due to insufficient validation of the input files, successful exploit could cause certain service abnormal. Affected product versions include:HUAWEI P30 versions 10.0.0.186(C10E7R5P1), 10.0.0.186(C461E4R3P1), 10.0.0.188(C00E85R2P11), 10.0.0.188(C01E88R2P11),10.0.0.188(C605E19R1P3), 10.0.0.190(C185E4R7P1), 10.0.0.190(C431E22R2P5), 10.0.0.190(C432E22R2P5),10.0.0.190(C605E19R1P3), 10.0.0.190(C636E4R3P4), 10.0.0.192(C635E3R2P4). |
Risk And Classification
Problem Types: CWE-787
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Huawei | P30 | - | All | All | All |
| Operating System | Huawei | P30 Firmware | 10.0.0.186\(c10e7r5p1\) | All | All | All |
| Operating System | Huawei | P30 Firmware | 10.0.0.186\(c461e4r3p1\) | All | All | All |
| Operating System | Huawei | P30 Firmware | 10.0.0.188\(c00e85r2p11\) | All | All | All |
| Operating System | Huawei | P30 Firmware | 10.0.0.188\(c01e88r2p11\) | All | All | All |
| Operating System | Huawei | P30 Firmware | 10.0.0.188\(c605e19r1p3\) | All | All | All |
| Operating System | Huawei | P30 Firmware | 10.0.0.190\(c185e4r7p1\) | All | All | All |
| Operating System | Huawei | P30 Firmware | 10.0.0.190\(c431e22r2p5\) | All | All | All |
| Operating System | Huawei | P30 Firmware | 10.0.0.190\(c432e22r2p5\) | All | All | All |
| Operating System | Huawei | P30 Firmware | 10.0.0.190\(c605e19r1p3\) | All | All | All |
| Operating System | Huawei | P30 Firmware | 10.0.0.190\(c636e4r3p4\) | All | All | All |
| Operating System | Huawei | P30 Firmware | 10.0.0.192\(c635e3r2p4\) | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Security Advisory - Arbitrary Memory Write Vulnerability in Huawei Smart Phone | MISC | www.huawei.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.