CVE-2017-17139: Huawei Mate 9 Firmware
Medium severity, CVSS 5.5. EPSS: 0.6% chance of exploitation in the next 30 days.
Huawei Mate 9 and Mate 9 pro smart phones with software the versions before MHA-AL00B 8.0.0.334(C00); the versions before LON-AL00B 8.0.0.334(C00) have a information leak vulnerability in the date service proxy implementation. An attacker may trick a user into installing a malicious application and application can exploit the vulnerability to get kernel date which may cause sensitive information leak.
Affected products
- Huawei Mate 9 Firmware: before mha-al00b_8.0.0.334\(c00\) (fixed in mha-al00b_8.0.0.334\(c00\))
- Huawei Mate 9 Pro Firmware: before lon-al00b_8.0.0.334\(c00\) (fixed in lon-al00b_8.0.0.334\(c00\))
Published 2018-03-05. Last modified 2026-06-17.