cve/2017/CVE-2017-8204.md

18 lines
845 B
Markdown
Raw Normal View History

2024-05-26 14:27:05 +02:00
### [CVE-2017-8204](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-8204)
![](https://img.shields.io/static/v1?label=Product&message=Honor%209&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Vulnerability&message=buffer%20overflow&color=brighgreen)
### Description
The Bastet driver of Honor 9 Huawei smart phones with software of versions earlier than Stanford-AL10C00B175 has a buffer overflow vulnerability due to the lack of parameter validation. An attacker tricks a user into installing a malicious APP which has the root privilege; the APP can send a specific parameter to the driver of the smart phone, causing arbitrary code execution
### POC
#### Reference
No PoCs from references.
#### Github
- https://github.com/guoygang/vul-guoygang