VYPR
Medium severity5.5NVD Advisory· Published Mar 5, 2018· Updated Jun 17, 2026

CVE-2017-17140

CVE-2017-17140

Description

Huawei Enjoy 5s and Y6 Pro smartphones with software the versions before TAG-AL00C92B170; the versions before TIT-L01C576B121 have an information leak vulnerability due to the lack of parameter validation. An attacker tricks a user into installing a malicious application on the smart phone and the application can read some sensitive information in kernel memory which may cause sensitive information leak.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

5
  • cpe:2.3:o:huawei:enjoy_5s_firmware:*:*:*:*:*:*:*:*
    Range: <tag-al00c92b170
  • cpe:2.3:o:huawei:y6_pro_firmware:*:*:*:*:*:*:*:*
    Range: <tit-l01c576b121
  • Huawei/Enjoy 5sllm-fuzzy
    Range: <TAG-AL00C92B170
  • Huawei/Y6 Prollm-fuzzy
    Range: <TIT-L01C576B121
  • Huawei Technologies Co., Ltd./Enjoy 5s; Y6 Prov5
    Range: The versions before TAG-AL00C92B170

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.