CVE-2017-2729: Huawei Honor 5a Firmware
High severity, CVSS 7.8. EPSS: 1.3% chance of exploitation in the next 30 days.
The boot loaders in Honor 5A smart phones with software Versions earlier than CAM-TL00C01B193,Versions earlier than CAM-TL00HC00B193,Versions earlier than CAM-UL00C00B193 have a buffer overflow vulnerability. An attacker with the root privilege of an Android system may trick a user into installing a malicious APP. The APP can modify specific data to cause buffer overflow in the next system reboot, causing continuous system reboot or arbitrary code execution.
Affected products
- Huawei Honor 5a Firmware: before cam-tl00c01b193 (fixed in cam-tl00c01b193); before cam-tl00hc00b193 (fixed in cam-tl00hc00b193); before cam-ul00c00b193 (fixed in cam-ul00c00b193)
- Huawei p8 Lite Firmware: before ale-l02c635b568 (fixed in ale-l02c635b568); before ale-l21c10b541 (fixed in ale-l21c10b541); before ale-l21c185b568 (fixed in ale-l21c185b568); before ale-l21c432b596 (fixed in ale-l21c432b596); before ale-l21c464b595 (fixed in ale-l21c464b595); before ale-l21c636b568 (fixed in ale-l21c636b568); …
Published 2017-11-22. Last modified 2026-06-17.