CVE-2017-17172

HIGH

Huawei LYO-L21 - Privilege Escalation

Title source: llm

Description

Huawei smart phones LYO-L21 with software LYO-L21C479B107, LYO-L21C479B107 have a privilege escalation vulnerability. An authenticated, local attacker can crafts malformed packets after tricking a user to install a malicious application and exploit this vulnerability when in the exception handling process. Successful exploitation may cause the attacker to obtain a higher privilege of the smart phones.

Scores

CVSS v3 7.3
EPSS 0.0002
EPSS Percentile 6.2%
Attack Vector LOCAL
CVSS:3.0/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H

Classification

CWE
CWE-755
Status published

Affected Products (1)

huawei/lyo-l21

Timeline

Published Jun 14, 2018
Tracked Since Feb 18, 2026