VYPR
Unrated severityNVD Advisory· Published Mar 5, 2018· Updated Sep 17, 2024

CVE-2017-8164

CVE-2017-8164

Description

Some Huawei smart phones with software EVA-L09C34B142; EVA-L09C40B196; EVA-L09C432B210; EVA-L09C440B138; EVA-L09C464B150; EVA-L09C530B127; EVA-L09C55B190; EVA-L09C576B150; EVA-L09C635B221; EVA-L09C636B193; EVA-L09C675B130; EVA-L09C688B143; EVA-L09C703B160; EVA-L09C706B145; EVA-L09GBRC555B171; EVA-L09IRLC368B160; EVA-L19C10B190; EVA-L19C185B220; EVA-L19C20B160; EVA-L19C432B210; EVA-L19C636B190; EVA-L29C20B160; EVA-L29C636B191; EVA-TL00C01B198; VIE-L09C02B131; VIE-L09C109B181; VIE-L09C113B170; VIE-L09C150B170; VIE-L09C25B120; VIE-L09C40B181; VIE-L09C432B181; VIE-L09C55B170; VIE-L09C605B131; VIE-L09ITAC555B130; VIE-L29C10B170; VIE-L29C185B181; VIE-L29C605B131; VIE-L29C636B202 have a denial of service (DoS) vulnerability. An attacker can trick a user to install a malicious application to exploit this vulnerability. Successful exploitation can cause camera application unusable.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

A denial-of-service vulnerability in Huawei smartphones allows a malicious app to make the camera unusable.

Vulnerability

A denial-of-service (DoS) vulnerability exists in the camera application of certain Huawei smartphones. Affected models include the EVA (P9) and VIE (P9 Plus) series running specific firmware versions such as EVA-L09C34B142, EVA-L09C40B196, VIE-L09C02B131, and others listed in the advisory [1]. The vulnerability is identified as HWPSIRT-2017-09006.

Exploitation

An attacker must convince a user to install a malicious application on the device. No additional privileges or network access are required. Once installed, the malicious app can trigger the vulnerability.

Impact

Successful exploitation renders the camera application unusable, resulting in a denial of service. No data theft, code execution, or persistent damage is reported.

Mitigation

Huawei has released software updates to fix this vulnerability. Users should update their devices to the resolved versions listed in the security advisory [1], such as EVA-AL10C00B397 for the EVA-AL10 model. The advisory was published on November 29, 2017.

AI Insight generated on May 26, 2026. Synthesized from this CVE's description and the cited reference URLs; citations are validated against the source bundle.

Affected products

2
  • Huawei Technologies Co., Ltd./EVA-AL10; EVA-CL00; EVA-DL00; EVA-L09; EVA-L19; EVA-L29; EVA-TL00; VIE-L09; VIE-L29v5
    Range: EVA-L09C34B142

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.