CVE-2017-2696: Huawei y6ii Firmware

High severity, CVSS 7.8. EPSS: 0.7% chance of exploitation in the next 30 days.

The emerg_data driver in CAM-L21C10B130 and earlier versions, CAM-L21C185B141 and earlier versions has a buffer overflow vulnerability. An attacker with the root privilege of the Android system can tricks a user into installing a malicious application on the smart phone, and send given parameter to smart phone to crash the system or escalate privilege.

Affected products

  • Huawei y6ii Firmware: up to and including cam-l21c185b141; up to and including cam-l21c10b130

Published 2017-11-22. Last modified 2026-06-17.