7

CVE-2016-6184

The Camera driver in Huawei Honor 4C smartphones with software CHM-UL00C00 before CHM-UL00C00B564, CHM-TL00C01 before CHM-TL00C01B564, and CHM-TL00C00 before CHM-TL00HC00B564 allows attackers to cause a denial of service (system crash) or gain privileges via a crafted application, a different vulnerability than CVE-2016-6180, CVE-2016-6181, CVE-2016-6182, and CVE-2016-6183.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Huawei ≫ Honor 4c Firmware Version chm-tl00c01_b535
   Huawei ≫ Honor 4c Version -
Huawei ≫ Honor 4c Firmware Version chm-tl00c01b556
   Huawei ≫ Honor 4c Version -
Huawei ≫ Honor 4c Firmware Version chm-tl00hc00_b535
   Huawei ≫ Honor 4c Version -
Huawei ≫ Honor 4c Firmware Version chm-tl00hc00b556
   Huawei ≫ Honor 4c Version -
Huawei ≫ Honor 4c Firmware Version chm-ul00c00b535
   Huawei ≫ Honor 4c Version -
Huawei ≫ Honor 4c Firmware Version chm-ul00c00b556
   Huawei ≫ Honor 4c Version -
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.23% 0.14
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 7 1 5.9
CVSS:3.0/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H
NIST 6.9 3.4 10
AV:L/AC:M/Au:N/C:C/I:C/A:C
CWE-284 Improper Access Control

The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor.

http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20160716-01-smartphone-en
Vendor Advisory