Vulnerability Details CVE-2018-7993
HUAWEI Mate 10 smartphones with versions earlier than ALP-AL00 8.1.0.311 have a use after free vulnerability on mediaserver component. An attacker tricks the user install a malicious application, which make the software to reference memory after it has been freed. Successful exploit could cause execution of arbitrary code.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 38.5%
CVSS Severity
CVSS v3 Score 7.8
CVSS v2 Score 9.3
Products affected by CVE-2018-7993
-
cpe:2.3:h:huawei:mate_10:-
-
cpe:2.3:o:huawei:mate_10_firmware:-
-
cpe:2.3:o:huawei:mate_10_firmware:10.0.0.143(c00e143r2p4)
-
cpe:2.3:o:huawei:mate_10_firmware:10.0.0.189(c185e6r1p3)
-
cpe:2.3:o:huawei:mate_10_firmware:9.0.0.159(c432e4r1p9t8)
-
cpe:2.3:o:huawei:mate_10_firmware:9.0.0.159(c636e2r1p12t8)
-
cpe:2.3:o:huawei:mate_10_firmware:9.0.0.167(c00e85r2p20t8)
-
cpe:2.3:o:huawei:mate_10_firmware:9.0.0.177(c185e2r1p12t8)
-
cpe:2.3:o:huawei:mate_10_firmware:alp-al00_8.0.0.120(sp2c00)