CVE-2017-8148

Description

Audio driver in P9 smartphones with software The versions before EVA-AL10C00B389 has a denial of service (DoS) vulnerability. An attacker tricks a user into installing a malicious application on the smart phone, and the race condition cause null pointer accessing during the application access shared resource, which make the system reboot.

Risk Information

Base Score
4.7
MODERATE
Vector
CVSS:3.0/AV:L/AC:H/PR:N/UI:R/S:U/C:N/I:N/A:H
EPSS Score
Exploitation Probability
0.054

Associated Vulnerability

VulnerabilityOS Platform
Vulnerabilities CVE-2016-8757 ,CVE-2017-17319 ,CVE-2017-2691 ,CVE-2017-2713 ,CVE-2017-8148 are affected in p9_firmware eva-al10c00b192NCM
Multiple Vulnerabilities affected in p9_firmware eva-al10c00NCM
Vulnerabilities CVE-2016-8757 ,CVE-2017-17319 ,CVE-2017-2691 ,CVE-2017-2713 ,CVE-2017-8148 are affected in p9_firmware eva-al10NCM
Vulnerabilities CVE-2017-17319 ,CVE-2017-2691 ,CVE-2017-2713 ,CVE-2017-8148 are affected in p9_firmware eva-al10c00b373NCM
Vulnerabilities CVE-2017-17319 ,CVE-2017-2691 ,CVE-2017-2713 ,CVE-2017-8148 are affected in p9_firmware eva-al10c00b365NCM
Vulnerabilities CVE-2017-17319 ,CVE-2017-2691 ,CVE-2017-2713 ,CVE-2017-8148 are affected in p9_firmware eva-al10c00b352NCM
Vulnerabilities CVE-2017-17319 ,CVE-2017-2691 ,CVE-2017-2713 ,CVE-2017-8148 are affected in p9_firmware eva-al10c00b195NCM
Vulnerabilities CVE-2017-17319 ,CVE-2017-2691 ,CVE-2017-2713 ,CVE-2017-8148 are affected in p9_firmware eva-al10c00b193NCM
Vulnerabilities CVE-2017-17319 ,CVE-2017-2691 ,CVE-2017-2713 ,CVE-2017-8148 are affected in p9_firmware eva-al00c00b398NCM
Vulnerabilities CVE-2017-17319 ,CVE-2017-2691 ,CVE-2017-2713 ,CVE-2017-8148 are affected in p9_firmware eva-al00c00b365NCM
Multiple Vulnerabilities affected in p9_firmware eva-al00c00b352NCM
Multiple Vulnerabilities affected in p9_firmware eva-al00NCM
Concurrent Execution using Shared Resource with Improper Synchronization (Race Condition) Vulnerability (CVE-2017-8148)NCM

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234