René Helmke 7791f18b51 bootstrap
2023-05-16 16:09:41 +02:00

117 lines
3.6 KiB
JSON

{
"id": "CVE-2020-1880",
"sourceIdentifier": "psirt@huawei.com",
"published": "2020-04-27T16:15:12.803",
"lastModified": "2020-04-30T18:27:58.850",
"vulnStatus": "Analyzed",
"descriptions": [
{
"lang": "en",
"value": "Huawei smartphone Lion-AL00C with versions earlier than 10.0.0.205(C00E202R7P2) have a denial of service vulnerability. An attacker crafted specially file to the affected device. Due to insufficient input validation of the value when executing the file, successful exploit may cause device abnormal."
},
{
"lang": "es",
"value": "El tel\u00e9fono inteligente Huawei Lion-AL00C con versiones anteriores a la versi\u00f3n 10.0.0.205(C00E202R7P2), presenta una vulnerabilidad de denegaci\u00f3n de servicio. Un atacante dise\u00f1\u00f3 un archivo especial para el dispositivo afectado. Debido a una insuficiente comprobaci\u00f3n de entrada del valor cuando se ejecuta el archivo, una explotaci\u00f3n con \u00e9xito puede causar un dispositivo anormal."
}
],
"metrics": {
"cvssMetricV31": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "3.1",
"vectorString": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H",
"attackVector": "LOCAL",
"attackComplexity": "LOW",
"privilegesRequired": "NONE",
"userInteraction": "REQUIRED",
"scope": "UNCHANGED",
"confidentialityImpact": "NONE",
"integrityImpact": "NONE",
"availabilityImpact": "HIGH",
"baseScore": 5.5,
"baseSeverity": "MEDIUM"
},
"exploitabilityScore": 1.8,
"impactScore": 3.6
}
],
"cvssMetricV2": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "2.0",
"vectorString": "AV:N/AC:M/Au:N/C:N/I:N/A:P",
"accessVector": "NETWORK",
"accessComplexity": "MEDIUM",
"authentication": "NONE",
"confidentialityImpact": "NONE",
"integrityImpact": "NONE",
"availabilityImpact": "PARTIAL",
"baseScore": 4.3
},
"baseSeverity": "MEDIUM",
"exploitabilityScore": 8.6,
"impactScore": 2.9,
"acInsufInfo": false,
"obtainAllPrivilege": false,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": true
}
]
},
"weaknesses": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "CWE-20"
}
]
}
],
"configurations": [
{
"operator": "AND",
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:o:huawei:lion-al00c_firmware:*:*:*:*:*:*:*:*",
"versionEndExcluding": "10.0.0.205\\(c00e202r7p2\\)",
"matchCriteriaId": "E5256E6F-DD42-4B8C-9A45-D10ABBD8C2C2"
}
]
},
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": false,
"criteria": "cpe:2.3:h:huawei:lion-al00c:-:*:*:*:*:*:*:*",
"matchCriteriaId": "3AE20666-6456-48C3-B612-95DC67FA1FE1"
}
]
}
]
}
],
"references": [
{
"url": "https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20200415-02-dos-en",
"source": "psirt@huawei.com",
"tags": [
"Vendor Advisory"
]
}
]
}