2023-04-24 12:24:31 +02:00
{
"id" : "CVE-2017-8215" ,
"sourceIdentifier" : "psirt@huawei.com" ,
"published" : "2017-11-22T19:29:05.617" ,
2024-12-08 03:06:42 +00:00
"lastModified" : "2024-11-21T03:33:33.207" ,
"vulnStatus" : "Modified" ,
2024-07-14 02:06:08 +00:00
"cveTags" : [ ] ,
2023-04-24 12:24:31 +02:00
"descriptions" : [
{
"lang" : "en" ,
"value" : "Honor 8,Honor V8,Honor 9,Honor V9,Nova 2,Nova 2 Plus,P9,P10 Plus,Toronto Huawei smart phones with software of versions earlier than FRD-AL00C00B391, versions earlier than FRD-DL00C00B391, versions earlier than KNT-AL10C00B391, versions earlier than KNT-AL20C00B391, versions earlier than KNT-UL10C00B391, versions earlier than KNT-TL10C00B391, versions earlier than Stanford-AL00C00B175, versions earlier than Stanford-AL10C00B175, versions earlier than Stanford-TL00C01B175, versions earlier than Duke-AL20C00B191, versions earlier than Duke-TL30C01B191, versions earlier than Picasso-AL00C00B162, versions earlier than Picasso-TL00C01B162 , versions earlier than Barca-AL00C00B162, versions earlier than Barca-TL00C00B162, versions earlier than EVA-AL10C00B396SP03, versions earlier than EVA-CL00C92B396, versions earlier than EVA-DL00C17B396, versions earlier than EVA-TL00C01B396 , versions earlier than Vicky-AL00AC00B172, versions earlier than Toronto-AL00AC00B191, versions earlier than Toronto-TL10C01B191 have a permission control vulnerability. An attacker with the system privilege of a mobile can exploit this vulnerability to bypass the unlock code verification and unlock the mobile phone bootloader."
} ,
{
"lang" : "es" ,
"value" : "Los smartphones Huawei Honor 8, Honor V8, Honor 9, Honor V9, Nova 2, Nova 2 Plus, P9, P10 Plus y Toronto con versiones de software anteriores a FRD-AL00C00B391, FRD-DL00C00B391, KNT-AL10C00B391, KNT-AL20C00B391, KNT-UL10C00B391, KNT-TL10C00B391, Stanford-AL00C00B175, Stanford-AL10C00B175, Stanford-TL00C01B175, Duke-AL20C00B191, Duke-TL30C01B191, Picasso-AL00C00B162, Picasso-TL00C01B162 , Barca-AL00C00B162, Barca-TL00C00B162, EVA-AL10C00B396SP03, EVA-CL00C92B396, EVA-DL00C17B396, EVA-TL00C01B396 , Vicky-AL00AC00B172, Toronto-AL00AC00B191 y Toronto-TL10C01B191 tienen una vulnerabilidad de control de permisos. Un atacante con privilegios de sistema de un m\u00f3vil puede explotar esta vulnerabilidad para omitir la verificaci\u00f3n del c\u00f3digo de desbloqueo y desbloquear el cargador de arranque del tel\u00e9fono m\u00f3vil."
}
] ,
"metrics" : {
"cvssMetricV30" : [
{
"source" : "nvd@nist.gov" ,
"type" : "Primary" ,
"cvssData" : {
"version" : "3.0" ,
"vectorString" : "CVSS:3.0/AV:P/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" ,
2024-12-08 03:06:42 +00:00
"baseScore" : 6.2 ,
"baseSeverity" : "MEDIUM" ,
2023-04-24 12:24:31 +02:00
"attackVector" : "PHYSICAL" ,
"attackComplexity" : "LOW" ,
"privilegesRequired" : "HIGH" ,
"userInteraction" : "NONE" ,
"scope" : "UNCHANGED" ,
"confidentialityImpact" : "HIGH" ,
"integrityImpact" : "HIGH" ,
2024-12-08 03:06:42 +00:00
"availabilityImpact" : "HIGH"
2023-04-24 12:24:31 +02:00
} ,
"exploitabilityScore" : 0.3 ,
"impactScore" : 5.9
}
] ,
"cvssMetricV2" : [
{
"source" : "nvd@nist.gov" ,
"type" : "Primary" ,
"cvssData" : {
"version" : "2.0" ,
"vectorString" : "AV:L/AC:L/Au:N/C:C/I:C/A:C" ,
2024-12-08 03:06:42 +00:00
"baseScore" : 7.2 ,
2023-04-24 12:24:31 +02:00
"accessVector" : "LOCAL" ,
"accessComplexity" : "LOW" ,
"authentication" : "NONE" ,
"confidentialityImpact" : "COMPLETE" ,
"integrityImpact" : "COMPLETE" ,
2024-12-08 03:06:42 +00:00
"availabilityImpact" : "COMPLETE"
2023-04-24 12:24:31 +02:00
} ,
"baseSeverity" : "HIGH" ,
"exploitabilityScore" : 3.9 ,
"impactScore" : 10.0 ,
"acInsufInfo" : false ,
"obtainAllPrivilege" : false ,
"obtainUserPrivilege" : false ,
"obtainOtherPrivilege" : false ,
"userInteractionRequired" : false
}
]
} ,
"weaknesses" : [
{
"source" : "nvd@nist.gov" ,
"type" : "Primary" ,
"description" : [
{
"lang" : "en" ,
"value" : "NVD-CWE-noinfo"
}
]
}
] ,
"configurations" : [
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:huawei:honor_8_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "frd-al00c00b391" ,
"matchCriteriaId" : "194C8907-447B-4DCF-B412-1213EF9F1B23"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:huawei:honor_8:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "72889681-6793-4451-B97F-F12B4B28372A"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:huawei:honor_8_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "frd-dl00c00b391" ,
"matchCriteriaId" : "52F0EA2A-1026-41A4-84FF-0F9AE952ED07"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:huawei:honor_8:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "72889681-6793-4451-B97F-F12B4B28372A"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:huawei:honor_v8_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "knt-al10c00b391" ,
"matchCriteriaId" : "8726C588-5828-455A-BEE8-9DCC3F125F17"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:huawei:honor_v8:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "61143255-9662-480E-BE01-07DB21B70D47"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:huawei:honor_v8_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "knt-al20c00b391" ,
"matchCriteriaId" : "552AAA4E-B600-4CF9-B8A9-F1668F3D8A14"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:huawei:honor_v8:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "61143255-9662-480E-BE01-07DB21B70D47"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:huawei:honor_v8_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "knt-ul10c00b391" ,
"matchCriteriaId" : "70ADD029-1A6E-41AD-8861-086DD06895BF"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:huawei:honor_v8:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "61143255-9662-480E-BE01-07DB21B70D47"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:huawei:honor_v8_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "knt-tl10c00b391" ,
"matchCriteriaId" : "426A0167-5C96-4FB8-B2B7-6F6DF9499321"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:huawei:honor_v8:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "61143255-9662-480E-BE01-07DB21B70D47"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:huawei:honor_9_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "stanford-al00c00b175" ,
"matchCriteriaId" : "39942200-B302-4029-8398-B91A874C4185"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:huawei:honor_9:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "804A493E-A0C3-41F7-AB1C-AE58F7473C26"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:huawei:honor_9_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "stanford-al10c00b175" ,
"matchCriteriaId" : "09F80677-BA85-4301-AAE6-661E66EFF359"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:huawei:honor_9:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "804A493E-A0C3-41F7-AB1C-AE58F7473C26"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:huawei:honor_9_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "stanford-tl00c01b175" ,
"matchCriteriaId" : "D1FD34EB-8972-4023-878E-08FCBADF97C2"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:huawei:honor_9:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "804A493E-A0C3-41F7-AB1C-AE58F7473C26"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:huawei:honor_v9_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "duke-al20c00b191" ,
"matchCriteriaId" : "4FCC1F75-1B2B-4553-A73F-5631BC24F959"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:huawei:honor_v9:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "EF2C1BBD-1BCA-4637-926E-6F81EB76C8E5"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:huawei:honor_v9_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "duke-tl30c01b191" ,
"matchCriteriaId" : "A350B04E-5411-46E1-83EE-23427F7E2478"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:huawei:honor_v9:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "EF2C1BBD-1BCA-4637-926E-6F81EB76C8E5"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:huawei:nova_2_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "picasso-al00c00b162" ,
"matchCriteriaId" : "B4F0500A-D9E3-46EB-AF66-87E62BC85021"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:huawei:nova_2:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "40EB1B51-6801-4C1C-ABBC-417295A4A280"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:huawei:nova_2_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "picasso-tl00c01b162" ,
"matchCriteriaId" : "E54D5FC2-A42B-4290-9CEA-99E1B22CB7D3"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:huawei:nova_2:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "40EB1B51-6801-4C1C-ABBC-417295A4A280"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:huawei:nova_2_plus_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "barca-al00c00b162" ,
"matchCriteriaId" : "996C1EC9-F251-444F-B447-7D8FB46C293C"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:huawei:nova_2_plus:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "B612E3F4-CB5E-4FD4-9D0A-4393C99067D8"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:huawei:nova_2_plus_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "barca-tl00c00b162" ,
"matchCriteriaId" : "29C5BF15-67AE-4B91-A0AA-354FB85E0D3C"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:huawei:nova_2_plus:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "B612E3F4-CB5E-4FD4-9D0A-4393C99067D8"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:huawei:p9_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "eva-al10c00b396sp03" ,
"matchCriteriaId" : "AD504F2F-FCB5-4E3E-88FB-3D5F164EC26A"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:huawei:p9:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "B1E734BC-513F-4FF6-B4AB-46A3AD8FA9BA"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:huawei:p9_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "eva-cl00c92b396" ,
"matchCriteriaId" : "FDF40632-4AB0-46FA-B36F-C7795A28F94B"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:huawei:p9:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "B1E734BC-513F-4FF6-B4AB-46A3AD8FA9BA"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:huawei:p9_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "eva-dl00c17b396" ,
"matchCriteriaId" : "1C864183-BD7C-46B5-AD94-3281B8044D31"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:huawei:p9:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "B1E734BC-513F-4FF6-B4AB-46A3AD8FA9BA"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:huawei:p9_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "eva-tl00c01b396" ,
"matchCriteriaId" : "827596A6-E033-46C7-BEC9-A78CDA411875"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:huawei:p9:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "B1E734BC-513F-4FF6-B4AB-46A3AD8FA9BA"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:huawei:p10_plus_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "vicky-al00ac00b172" ,
"matchCriteriaId" : "0BE42535-6A21-4993-8F8B-2C54CE17F515"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:huawei:p10_plus:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "FAD5BC83-41ED-4260-8883-4CA5898A4FAD"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:huawei:toronto_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "toronto-al00ac00b191" ,
"matchCriteriaId" : "DAF16468-2C98-4D95-8700-3CE1A533928B"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:huawei:toronto:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "FD56AE7F-3CE7-4F9B-A187-77B074B1D4D3"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:huawei:toronto_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "toronto-tl10c01b191" ,
"matchCriteriaId" : "66A9C781-A1AA-4F25-BC38-588BA8D3B4F0"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:huawei:toronto:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "FD56AE7F-3CE7-4F9B-A187-77B074B1D4D3"
}
]
}
]
}
] ,
"references" : [
{
"url" : "http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20170807-01-smartphone-en" ,
"source" : "psirt@huawei.com" ,
"tags" : [
"Issue Tracking" ,
"Vendor Advisory"
]
2024-12-08 03:06:42 +00:00
} ,
{
"url" : "http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20170807-01-smartphone-en" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108" ,
"tags" : [
"Issue Tracking" ,
"Vendor Advisory"
]
2023-04-24 12:24:31 +02:00
}
]
}