CVE-2017-8204: Huawei Honor 9 Firmware

High severity, CVSS 7.8. EPSS: 1.3% chance of exploitation in the next 30 days.

The Bastet driver of Honor 9 Huawei smart phones with software of versions earlier than Stanford-AL10C00B175 has a buffer overflow vulnerability due to the lack of parameter validation. An attacker tricks a user into installing a malicious APP which has the root privilege; the APP can send a specific parameter to the driver of the smart phone, causing arbitrary code execution

Affected products

  • Huawei Honor 9 Firmware: before stanford-al10c00b175 (fixed in stanford-al10c00b175)

Published 2017-11-22. Last modified 2026-06-17.