CVE-2017-17171: Huawei Mate 8 Firmware

Medium severity, CVSS 4.2. EPSS: 0.5% chance of exploitation in the next 30 days.

Some Huawei smart phones have the denial of service (DoS) vulnerability due to the improper processing of malicious parameters. An attacker may trick a target user into installing a malicious APK and launch attacks using a pre-installed app with specific permissions. Successful exploit could allow the app to send specific parameters to the smart phone driver, which will result in system restart.

Affected products

  • Huawei Mate 8 Firmware: before nxt-al10c00b593 (fixed in nxt-al10c00b593); before nxt-cl00c92b593 (fixed in nxt-cl00c92b593); before nxt-dl00c17b593 (fixed in nxt-dl00c17b593); before nxt-l09c636b598a (fixed in nxt-l09c636b598a); before nxt-l09c185b583 (fixed in nxt-l09c185b583); before nxt-l09c432b582 (fixed in nxt-l09c432b582); …
  • Huawei p9 Firmware: before eva-al00c00b398 (fixed in eva-al00c00b398); before eva-al10c00b398 (fixed in eva-al10c00b398); before eva-cl00c92b398 (fixed in eva-cl00c92b398); before eva-dl00c17b398 (fixed in eva-dl00c17b398); before eva-l09c185b391 (fixed in eva-l09c185b391); before eva-l09c432b395 (fixed in eva-l09c432b395); …
  • Huawei p9 Plus Firmware: before vie-l09c318b182 (fixed in vie-l09c318b182); before vie-l09c432b380 (fixed in vie-l09c432b380); before vie-l09c576b180 (fixed in vie-l09c576b180); before vie-l29c605b370 (fixed in vie-l29c605b370); before vie-l29c636b388 (fixed in vie-l29c636b388)

Published 2018-06-01. Last modified 2026-06-17.