Vulnerability Details CVE-2020-9262
HUAWEI Mate 30 with versions earlier than 10.1.0.150(C00E136R5P3) have a use after free vulnerability. There is a condition exists that the system would reference memory after it has been freed, the attacker should trick the user into running a crafted application with high privilege, successful exploit could cause code execution.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 54.1%
CVSS Severity
CVSS v3 Score 7.8
CVSS v2 Score 6.8
Products affected by CVE-2020-9262
-
cpe:2.3:h:huawei:mate_30:-
-
cpe:2.3:o:huawei:mate_30_firmware:-
-
cpe:2.3:o:huawei:mate_30_firmware:10.0.0.182(c00e180r6p2)
-
cpe:2.3:o:huawei:mate_30_firmware:10.0.0.203(c00e201r7p2)
-
cpe:2.3:o:huawei:mate_30_firmware:10.0.0.203(c00e202r7p2)
-
cpe:2.3:o:huawei:mate_30_firmware:10.0.0.205(c00e201r7p2)
-
cpe:2.3:o:huawei:mate_30_firmware:10.1.0.126(c00e125r5p3)