CVE-2017-17328

Description

Huawei smartphones with software of MHA-AL00AC00B125 have an integer overflow vulnerability. The software does not process certain variable properly when handle certain process. An attacker tricks the user who has root privilege to install a crafted application, successful exploit could cause information disclosure.

Risk Information

Base Score
5.5
MODERATE
Vector
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
EPSS Score
Exploitation Probability
0.101

Associated Vulnerability

VulnerabilityOS Platform
Vulnerabilities CVE-2017-17327 ,CVE-2017-17328 are affected in mha-al00a_firmware mha-al00ac00b125NCM
Integer Overflow or Wraparound Vulnerability (CVE-2017-17328)NCM

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234