CVE-2017-17328: Huawei Mha-AL00A Firmware

Medium severity, CVSS 5.5. EPSS: 0.7% chance of exploitation in the next 30 days.

Huawei smartphones with software of MHA-AL00AC00B125 have an integer overflow vulnerability. The software does not process certain variable properly when handle certain process. An attacker tricks the user who has root privilege to install a crafted application, successful exploit could cause information disclosure.

Affected products

  • Huawei Mha-AL00A Firmware: version mha-al00ac00b125 only

Published 2018-03-09. Last modified 2026-06-17.