425 lines
12 KiB
JSON
Raw Normal View History

2023-04-24 12:24:31 +02:00
{
"id": "CVE-2020-1785",
"sourceIdentifier": "psirt@huawei.com",
"published": "2020-01-03T15:15:12.070",
"lastModified": "2021-07-21T11:39:23.747",
"vulnStatus": "Analyzed",
"descriptions": [
{
"lang": "en",
"value": "Mate 10 Pro;Honor V10;Honor 10;Nova 4 smartphones have a denial of service vulnerability. The system does not properly check the status of certain module during certain operations, an attacker should trick the user into installing a malicious application, successful exploit could cause reboot of the smartphone."
},
{
"lang": "es",
"value": "Los tel\u00e9fonos inteligentes Mate 10 Pro; Honor V10; Honor 10; Nova 4, tiene una vulnerabilidad de denegaci\u00f3n de servicio. El sistema no comprueba apropiadamente el estado de cierto m\u00f3dulo durante determinadas operaciones, un atacante debe enga\u00f1ar al usuario para que instale una aplicaci\u00f3n maliciosa, una explotaci\u00f3n con \u00e9xito podr\u00eda causar el reinicio del tel\u00e9fono inteligente."
}
],
"metrics": {
"cvssMetricV31": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "3.1",
"vectorString": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H",
"attackVector": "LOCAL",
"attackComplexity": "LOW",
"privilegesRequired": "NONE",
"userInteraction": "REQUIRED",
"scope": "UNCHANGED",
"confidentialityImpact": "NONE",
"integrityImpact": "NONE",
"availabilityImpact": "HIGH",
"baseScore": 5.5,
"baseSeverity": "MEDIUM"
},
"exploitabilityScore": 1.8,
"impactScore": 3.6
}
],
"cvssMetricV2": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "2.0",
"vectorString": "AV:N/AC:M/Au:N/C:N/I:N/A:C",
"accessVector": "NETWORK",
"accessComplexity": "MEDIUM",
"authentication": "NONE",
"confidentialityImpact": "NONE",
"integrityImpact": "NONE",
"availabilityImpact": "COMPLETE",
"baseScore": 7.1
},
"baseSeverity": "HIGH",
"exploitabilityScore": 8.6,
"impactScore": 6.9,
"acInsufInfo": false,
"obtainAllPrivilege": false,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": true
}
]
},
"weaknesses": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "NVD-CWE-noinfo"
}
]
}
],
"configurations": [
{
"operator": "AND",
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:o:huawei:mate_10_pro_firmware:*:*:*:*:*:*:*:*",
"versionEndExcluding": "9.1.0.321\\(c605e4r1p13t8\\)",
"matchCriteriaId": "51374D35-8EE8-4A6D-BFE9-561342F8C219"
}
]
},
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": false,
"criteria": "cpe:2.3:h:huawei:mate_10_pro:-:*:*:*:*:*:*:*",
"matchCriteriaId": "5FC0AD4F-0368-4F29-ACCF-B948B8C6BE05"
}
]
}
]
},
{
"operator": "AND",
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:o:huawei:mate_10_pro_firmware:*:*:*:*:*:*:*:*",
"versionEndExcluding": "9.1.0.321\\(c636e4r1p14t8\\)",
"matchCriteriaId": "F5FDA48C-29BD-4FF8-A461-5B0DBFA26316"
}
]
},
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": false,
"criteria": "cpe:2.3:h:huawei:mate_10_pro:-:*:*:*:*:*:*:*",
"matchCriteriaId": "5FC0AD4F-0368-4F29-ACCF-B948B8C6BE05"
}
]
}
]
},
{
"operator": "AND",
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:o:huawei:mate_10_pro_firmware:*:*:*:*:*:*:*:*",
"versionEndExcluding": "9.1.0.330\\(c432e6r1p12t8\\)",
"matchCriteriaId": "03B98CA0-296C-4404-A853-735C1A1E452F"
}
]
},
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": false,
"criteria": "cpe:2.3:h:huawei:mate_10_pro:-:*:*:*:*:*:*:*",
"matchCriteriaId": "5FC0AD4F-0368-4F29-ACCF-B948B8C6BE05"
}
]
}
]
},
{
"operator": "AND",
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:o:huawei:honor_v10_firmware:*:*:*:*:*:*:*:*",
"versionEndExcluding": "9.1.0.333\\(c00e333r2p1t8\\)",
"matchCriteriaId": "B394D790-9589-4FC3-8B51-47B9F6E241D2"
}
]
},
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": false,
"criteria": "cpe:2.3:h:huawei:honor_v10:-:*:*:*:*:*:*:*",
"matchCriteriaId": "592CF37A-83FA-4C85-B5E7-1DB2297A77A0"
}
]
}
]
},
{
"operator": "AND",
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:o:huawei:honor_v10_firmware:*:*:*:*:*:*:*:*",
"versionEndExcluding": "9.1.0.350\\(c636e4r1p13t8\\)",
"matchCriteriaId": "0EC5D740-6DEC-42E0-BD76-E253389C8AC2"
}
]
},
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": false,
"criteria": "cpe:2.3:h:huawei:honor_v10:-:*:*:*:*:*:*:*",
"matchCriteriaId": "592CF37A-83FA-4C85-B5E7-1DB2297A77A0"
}
]
}
]
},
{
"operator": "AND",
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:o:huawei:honor_v10_firmware:*:*:*:*:*:*:*:*",
"versionEndExcluding": "9.1.0.351\\(c432e5r1p13t8\\)",
"matchCriteriaId": "8D410275-349D-421F-8700-76F0AB160928"
}
]
},
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": false,
"criteria": "cpe:2.3:h:huawei:honor_v10:-:*:*:*:*:*:*:*",
"matchCriteriaId": "592CF37A-83FA-4C85-B5E7-1DB2297A77A0"
}
]
}
]
},
{
"operator": "AND",
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:o:huawei:honor_10_firmware:*:*:*:*:*:*:*:*",
"versionEndExcluding": "9.1.0.350\\(c10e5r1p14t8\\)",
"matchCriteriaId": "9614091A-8FEA-422F-BCB9-BC3434527428"
}
]
},
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": false,
"criteria": "cpe:2.3:h:huawei:honor_10:-:*:*:*:*:*:*:*",
"matchCriteriaId": "6645D5D7-213C-4B3E-B5A6-8987AEFB411D"
}
]
}
]
},
{
"operator": "AND",
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:o:huawei:honor_10_firmware:*:*:*:*:*:*:*:*",
"versionEndExcluding": "9.1.0.350\\(c185e3r1p12t8\\)",
"matchCriteriaId": "2810D0DE-E189-4365-8E6F-D5E185886BBE"
}
]
},
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": false,
"criteria": "cpe:2.3:h:huawei:honor_10:-:*:*:*:*:*:*:*",
"matchCriteriaId": "6645D5D7-213C-4B3E-B5A6-8987AEFB411D"
}
]
}
]
},
{
"operator": "AND",
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:o:huawei:honor_10_firmware:*:*:*:*:*:*:*:*",
"versionEndExcluding": "9.1.0.350\\(c461e3r1p11t8\\)",
"matchCriteriaId": "17EB0784-E604-4DA7-AB16-AB6C77425F70"
}
]
},
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": false,
"criteria": "cpe:2.3:h:huawei:honor_10:-:*:*:*:*:*:*:*",
"matchCriteriaId": "6645D5D7-213C-4B3E-B5A6-8987AEFB411D"
}
]
}
]
},
{
"operator": "AND",
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:o:huawei:honor_10_firmware:*:*:*:*:*:*:*:*",
"versionEndExcluding": "9.1.0.350\\(c636e3r1p13t8\\)",
"matchCriteriaId": "536F2BCC-02B1-46FE-82BA-09C47E464F7E"
}
]
},
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": false,
"criteria": "cpe:2.3:h:huawei:honor_10:-:*:*:*:*:*:*:*",
"matchCriteriaId": "6645D5D7-213C-4B3E-B5A6-8987AEFB411D"
}
]
}
]
},
{
"operator": "AND",
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:o:huawei:honor_10_firmware:*:*:*:*:*:*:*:*",
"versionEndExcluding": "9.1.0.351\\(c432e5r1p13t8\\)",
"matchCriteriaId": "76784FE7-7B76-4135-A74F-20884EDA55AA"
}
]
},
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": false,
"criteria": "cpe:2.3:h:huawei:honor_10:-:*:*:*:*:*:*:*",
"matchCriteriaId": "6645D5D7-213C-4B3E-B5A6-8987AEFB411D"
}
]
}
]
},
{
"operator": "AND",
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:o:huawei:nova_4_firmware:*:*:*:*:*:*:*:*",
"versionEndExcluding": "9.1.0.225\\(c636e1r4p1\\)",
"matchCriteriaId": "C7D2CF01-95D0-4FD3-91FE-3242C3D3DA6F"
}
]
},
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": false,
"criteria": "cpe:2.3:h:huawei:nova_4:-:*:*:*:*:*:*:*",
"matchCriteriaId": "07D1E240-F1DE-4FC0-84B7-873978A9A6B3"
}
]
}
]
}
],
"references": [
{
"url": "https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20200102-03-smartphone-en",
"source": "psirt@huawei.com",
"tags": [
"Vendor Advisory"
]
}
]
}