CVE-2017-2701
low
CVSS v3
3.3
CVSS v2
4.3
VIR risk
3.3
Description
Mate 9 with software MHA-AL00AC00B125 has a denial of service (DoS) vulnerability. An attacker tricks a user into installing a malicious application. Since the system does not verify the broadcasting message from the application, it could be exploited to cause some functions of system unavailable.
Predictions
Exploit likelihood
34%
Patch ETA
—
Heuristic predictions, AS-IS, for prioritization only.
Mitigations
Vendor advisory: psirt@huawei.com — http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20170802-01-broadcasting-en
References
CWEs
CWE-345
Verify integrity in audit chain (admin only). AS-IS.