CVE-2017-8159: Huawei Agassi-l09hn Firmware

High severity, CVSS 7.8. EPSS: 1% chance of exploitation in the next 30 days.

Some Huawei smartphones with software AGS-L09C233B019,AGS-W09C233B019,KOB-L09C233B017,KOB-W09C233B012 have a type confusion vulnerability. The program initializes a variable using one type, but it later accesses that variable using a type that is different with the original type when do certain register operation. Successful exploit could result in buffer overflow then may cause malicious code execution.

Affected products

  • Huawei Agassi-l09hn Firmware: version ags-l09c233b019 only
  • Huawei Agassi-w09hn Firmware: version ags-w09c233b019 only
  • Huawei Kobe-l09ahn Firmware: version kob-l09c233b017 only
  • Huawei Kobe-w09chn Firmware: version kob-w09c233b012 only

Published 2017-11-22. Last modified 2026-06-17.