CVE-2017-17172

HIGH

Huawei LYO-L21 - Privilege Escalation

Title source: llm
STIX 2.1

Description

Huawei smart phones LYO-L21 with software LYO-L21C479B107, LYO-L21C479B107 have a privilege escalation vulnerability. An authenticated, local attacker can crafts malformed packets after tricking a user to install a malicious application and exploit this vulnerability when in the exception handling process. Successful exploitation may cause the attacker to obtain a higher privilege of the smart phones.

References (1)

Core 1

Scores

CVSS v3 7.3
EPSS 0.0002
EPSS Percentile 7.1%
Attack Vector LOCAL
CVSS:3.0/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H

Details

CWE
CWE-755
Status published
Products (1)
huawei/lyo-l21
Published Jun 14, 2018
Tracked Since Feb 18, 2026