CVE-2017-8181: Huawei Mtk Platform Smart Phone Firmware
High severity, CVSS 7.8. EPSS: 0.6% chance of exploitation in the next 30 days.
The camera driver of MTK platform in Huawei smart phones with software of versions earlier than Nice-AL00C00B155 has a arbitrary memory write vulnerability.Due to the insufficient input verification, an attacker tricks a user into installing a malicious application which has special privilege and sends a specific parameter to the driver of the smart phone, causing privilege escalation.
Affected products
- Huawei Mtk Platform Smart Phone Firmware: before nice-al00c00b155 (fixed in nice-al00c00b155)
Published 2017-11-22. Last modified 2026-06-17.