CVE-2021-22327
Published Apr 28, 2021
Last updated 4 years ago
Overview
- Description
- There is an arbitrary memory write vulnerability in Huawei smart phone when processing file parsing. Due to insufficient validation of the input files, successful exploit could cause certain service abnormal. Affected product versions include:HUAWEI P30 versions 10.0.0.186(C10E7R5P1), 10.0.0.186(C461E4R3P1), 10.0.0.188(C00E85R2P11), 10.0.0.188(C01E88R2P11),10.0.0.188(C605E19R1P3), 10.0.0.190(C185E4R7P1), 10.0.0.190(C431E22R2P5), 10.0.0.190(C432E22R2P5),10.0.0.190(C605E19R1P3), 10.0.0.190(C636E4R3P4), 10.0.0.192(C635E3R2P4).
- Source
- psirt@huawei.com
- NVD status
- Analyzed
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 3.1
- Type
- Primary
- Base score
- 6.5
- Impact score
- 3.6
- Exploitability score
- 2.8
- Vector string
- CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
- Severity
- MEDIUM
CVSS 2.0
- Type
- Primary
- Base score
- 4.3
- Impact score
- 2.9
- Exploitability score
- 8.6
- Vector string
- AV:N/AC:M/Au:N/C:N/I:N/A:P
Weaknesses
- nvd@nist.gov
- CWE-787
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:huawei:p30_firmware:10.0.0.186\\(c10e7r5p1\\):*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5CCB8EA7-C9E7-4855-B203-B0E92629E96C" }, { "criteria": "cpe:2.3:o:huawei:p30_firmware:10.0.0.186\\(c461e4r3p1\\):*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E8BB4F42-422C-4C7A-A1E0-4F7088D923C0" }, { "criteria": "cpe:2.3:o:huawei:p30_firmware:10.0.0.188\\(c00e85r2p11\\):*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B1C06A19-8AE9-4184-97C1-62C370614CBE" }, { "criteria": "cpe:2.3:o:huawei:p30_firmware:10.0.0.188\\(c01e88r2p11\\):*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A8FE7760-CE52-4B86-B016-EE2C1E91C128" }, { "criteria": "cpe:2.3:o:huawei:p30_firmware:10.0.0.188\\(c605e19r1p3\\):*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "ED9377B1-039C-4563-AE8D-53B821C72D2C" }, { "criteria": "cpe:2.3:o:huawei:p30_firmware:10.0.0.190\\(c185e4r7p1\\):*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2A322538-FDA4-4AB4-AAB5-4055347676FA" }, { "criteria": "cpe:2.3:o:huawei:p30_firmware:10.0.0.190\\(c431e22r2p5\\):*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "79845BD4-2B20-44CE-A78C-C666153D76C4" }, { "criteria": "cpe:2.3:o:huawei:p30_firmware:10.0.0.190\\(c432e22r2p5\\):*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7F51F54B-3D16-4568-BFA8-D5FBCA8F10E2" }, { "criteria": "cpe:2.3:o:huawei:p30_firmware:10.0.0.190\\(c605e19r1p3\\):*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "06EDAE0B-D4A0-4E41-BF32-487DA170ACEA" }, { "criteria": "cpe:2.3:o:huawei:p30_firmware:10.0.0.190\\(c636e4r3p4\\):*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "36B2746C-D296-4AF5-BFE9-B942802C7750" }, { "criteria": "cpe:2.3:o:huawei:p30_firmware:10.0.0.192\\(c635e3r2p4\\):*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B5901BC9-9EC0-4FFA-A597-3E8C8E858389" } ], "operator": "OR" }, { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:h:huawei:p30:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "21EE286C-8111-4F59-8CF1-13C68EA76B21" } ], "operator": "OR" } ], "operator": "AND" } ]