CVE-2019-5235
MEDIUM
5,3
Source: [email protected]
Attack Vector: network
Attack Complexity: low
Privileges Required: none
User Interaction: none
Scope: unchanged
Confidentiality: none
Integrity: none
Availability: low
MEDIUM
5,0
Source: [email protected]
Access Vector: network
Access Complexity: low
Authentication: none
Confidentiality: none
Integrity: none
Availability: partial
Description
AI Translation Available
Some Huawei smart phones have a null pointer dereference vulnerability. An attacker crafts specific packets and sends to the affected product to exploit this vulnerability. Successful exploitation may cause the affected phone to be abnormal.
EPSS (Exploit Prediction Scoring System)
Trend Analysis
EPSS (Exploit Prediction Scoring System)
Prevede la probabilità di sfruttamento basata su intelligence sulle minacce e sulle caratteristiche della vulnerabilità.
EPSS Score
0,0025
Percentile
0,5th
Updated
EPSS Score Trend (Last 91 Days)
476
NULL Pointer Dereference
StableCommon Consequences
Security Scopes Affected:
Availability
Integrity
Confidentiality
Potential Impacts:
Dos: Crash, Exit, Or Restart
Execute Unauthorized Code Or Commands
Read Memory
Modify Memory
Applicable Platforms
Languages:
C, C#, C++, Go, Java
Operating System
Columbia-L29D Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:columbia-l29d_firmware:8.1.0.151\(c432\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Alp-Al00B Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:alp-al00b_firmware:8.0.0.153\(c00\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Columbia-Al10I Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:columbia-al10i_firmware:8.1.0.150\(c675custc675d2\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Johnson-L23C Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:johnson-l23c_firmware:8.2.0.130\(c636custc636d2\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Johnson-Tl00D Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:johnson-tl00d_firmware:8.2.0.100\(c541custc541d1\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Princeton-Al10I Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:princeton-al10i_firmware:9.0.1.150\(c675e9r1p4\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Johnson-L42Ie Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:johnson-l42ie_firmware:8.2.0.155\(c675r2p1\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Johnson-L22D Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:johnson-l22d_firmware:8.2.0.105\(c185r2p1\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Potter-Al00C Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:potter-al00c_firmware:9.1.0.208\(c00e205r3p1\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Alp-Tl00B Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:alp-tl00b_firmware:8.0.0.129\(sp2c01\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Elle-Tl00B Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:elle-tl00b_firmware:9.1.0.162\(c01e160r2p1\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Johnson-L21C Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:johnson-l21c_firmware:8.2.0.131\(c10r2p2\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Emily-Tl00B Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:emily-tl00b_firmware:8.1.0.175\(c01\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Johnson-Al10C Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:johnson-al10c_firmware:8.2.0.165\(c00r1p16\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Johnson-L42If Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:johnson-l42if_firmware:8.2.0.155\(c675r2p1\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Charlotte-Al00A Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:charlotte-al00a_firmware:8.1.0.176\(c00\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Ever-L29B Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:ever-l29b_firmware:9.0.0.208\(c432e3r1p12\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Johnson-Tl00F Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:johnson-tl00f_firmware:8.2.0.100\(c541custc541d1\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Johnson-L22C Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:johnson-l22c_firmware:8.2.0.105\(c185r1p1\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Jackman-L21 Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:jackman-l21_firmware:8.2.0.160\(c185\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Jackman-L22 Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:jackman-l22_firmware:8.2.0.156\(c636r2p2\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Emily-Al00A Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:emily-al00a_firmware:8.1.0.190\(c00\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Jackman-L23 Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:jackman-l23_firmware:8.2.0.152\(c45custc45d1\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Tony-Al00B Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:tony-al00b_firmware:9.1.0.206\(c00e200r2p3\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Johnson-L21C Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:johnson-l21c_firmware:8.2.0.130\(c461r1p1\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Harry-Al10B Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:harry-al10b_firmware:9.1.0.206\(c00e205r3p1\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Harry-Al00C Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:harry-al00c_firmware:9.1.0.206\(c00e205r3p1\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Neo-Al00D Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:neo-al00d_firmware:8.1.0.175\(c786\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Johnson-L21D Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:johnson-l21d_firmware:8.2.0.101\(c10custc10d1\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Johnson-Al00Ic Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:johnson-al00ic_firmware:8.2.0.161\(c675custc675d1\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Hima-Al00B Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:hima-al00b_firmware:9.0.0.200\(c00e200r2p1\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Vogue-Al00A-Preload Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:vogue-al00a-preload_firmware:9.1.0.12\(c00r1\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Johnson-L22D Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:johnson-l22d_firmware:8.2.0.107\(c636r2p1\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Ever-Al00B Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:ever-al00b_firmware:9.0.0.195\(c00e195r2p1\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Laya-Al00Ep Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:laya-al00ep_firmware:9.0.0.201\(c786e200r2p1\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Elle-Al00B Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:elle-al00b_firmware:9.1.0.162\(c00e160r2p1\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Columbia-Tl00D Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:columbia-tl00d_firmware:8.1.0.186\(c01gt\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Columbia-Al10B Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:columbia-al10b_firmware:8.1.0.163\(c00\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Vogue-Tl00B Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:vogue-tl00b_firmware:9.1.0.162\(c01e160r2p1\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Johnson-Tl00D Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:johnson-tl00d_firmware:8.2.0.165\(c01r1p16\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Jackman-L23 Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:jackman-l23_firmware:8.2.0.162\(c605\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Columbia-L29D Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:columbia-l29d_firmware:8.1.0.148\(c185\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Bla-Al00B Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:bla-al00b_firmware:8.0.0.129\(sp2c786\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Johnson-L42Ic Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:johnson-l42ic_firmware:8.2.0.155\(c675r2p1\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Princeton-Al10D Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:princeton-al10d_firmware:9.1.0.212\(c00e204r2p2\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Ever-L29B Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:ever-l29b_firmware:9.0.0.206\(c185e3r3p1\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Tony-Tl00B Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:tony-tl00b_firmware:9.1.0.206\(c01e200r2p3\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Potter-Al10A Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:potter-al10a_firmware:9.1.0.208\(c00e205r3p1\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Johnson-L21D Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:johnson-l21d_firmware:8.2.0.101\(c432custc432d1\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Johnson-L21C Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:johnson-l21c_firmware:8.2.0.136\(c432custc432d1\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Charlotte-Tl00B Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:charlotte-tl00b_firmware:8.1.0.176\(c01\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Johnson-L22C Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:johnson-l22c_firmware:8.2.0.107\(c636r2p1\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Johnson-L23C Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:johnson-l23c_firmware:8.2.0.133\(c605custc605d1\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Harry-Al10B Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:harry-al10b_firmware:-:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Vogue-Al10C-Preload Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:vogue-al10c-preload_firmware:9.1.0.12\(c00r1\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Johnson-L21D Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:johnson-l21d_firmware:8.2.0.131\(c55custc55d1\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Princeton-Tl10C Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:princeton-tl10c_firmware:9.1.0.211\(c01e203r2p2\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Columbia-L29D Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:columbia-l29d_firmware:8.1.0.151\(c10\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Vogue-Al00A Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:vogue-al00a_firmware:9.1.0.162\(c00e160r2p1\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Ever-L29B Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:ever-l29b_firmware:9.0.0.207\(c636e3r2p1\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Harry-Tl00C Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:harry-tl00c_firmware:9.0.1.162\(c01e160r2p3\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Bla-Al00B Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:bla-al00b_firmware:8.0.0.153\(c00\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Columbia-L29D Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:columbia-l29d_firmware:8.1.0.146\(c461\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Vogue-Al10C Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:vogue-al10c_firmware:9.1.0.162\(c00e160r2p1\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Princeton-Al10B Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:princeton-al10b_firmware:9.1.0.211\(c00e203r2p2\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Bla-Tl00B Firmware by Huawei
CPE Identifier
View Detailed Analysis
cpe:2.3:o:huawei:bla-tl00b_firmware:8.0.0.129\(sp2c01\):*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20190821-01-smart…
https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20190821-01-smart…