Vulnerability Database

289,599

Total vulnerabilities in the database

CVE-2018-7899

The Mali Driver of Huawei Berkeley-AL20 and Berkeley-BD smart phones with software Berkeley-AL20 8.0.0.105(C00), 8.0.0.111(C00), 8.0.0.112D(C00), 8.0.0.116(C00), 8.0.0.119(C00), 8.0.0.119D(C00), 8.0.0.122(C00), 8.0.0.132(C00), 8.0.0.132D(C00), 8.0.0.142(C00), 8.0.0.151(C00), Berkeley-BD 1.0.0.21, 1.0.0.22, 1.0.0.23, 1.0.0.24, 1.0.0.26, 1.0.0.29 has a double free vulnerability. An attacker can trick a user to install a malicious application and exploit this vulnerability when in the exception handling process. Successful exploitation may cause system reboot.

  • Published: Apr 19, 2018
  • Updated: Apr 13, 2023
  • CVE: CVE-2018-7899
  • Severity: Medium
  • Exploit:

CVSS v3:

  • Severity: Medium
  • Score: 5.5
  • AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

CVSS v2:

  • Severity: High
  • Score: 7.1
  • AV:N/AC:M/Au:N/C:N/I:N/A:C

CWEs:

Software From Fixed in
huawei / berkeley-al20_firmware 8.0.0.105(c00) 8.0.0.105(c00).x
huawei / berkeley-al20_firmware 8.0.0.111(c00) 8.0.0.111(c00).x
huawei / berkeley-al20_firmware 8.0.0.112d(c00) 8.0.0.112d(c00).x
huawei / berkeley-al20_firmware 8.0.0.116(c00) 8.0.0.116(c00).x
huawei / berkeley-al20_firmware 8.0.0.119(c00) 8.0.0.119(c00).x
huawei / berkeley-al20_firmware 8.0.0.119d(c00) 8.0.0.119d(c00).x
huawei / berkeley-al20_firmware 8.0.0.122(c00) 8.0.0.122(c00).x
huawei / berkeley-al20_firmware 8.0.0.132(c00) 8.0.0.132(c00).x
huawei / berkeley-al20_firmware 8.0.0.132d(c00) 8.0.0.132d(c00).x
huawei / berkeley-al20_firmware 8.0.0.142(c00) 8.0.0.142(c00).x
huawei / berkeley-al20_firmware 8.0.0.151(c00) 8.0.0.151(c00).x
huawei / berkeley-bd_firmware 1.0.0.21 1.0.0.21.x
huawei / berkeley-bd_firmware 1.0.0.22 1.0.0.22.x
huawei / berkeley-bd_firmware 1.0.0.23 1.0.0.23.x
huawei / berkeley-bd_firmware 1.0.0.24 1.0.0.24.x
huawei / berkeley-bd_firmware 1.0.0.26 1.0.0.26.x
huawei / berkeley-bd_firmware 1.0.0.29 1.0.0.29.x