CVE-2018-7993: Huawei Mate 10 Firmware

High severity, CVSS 7.8. EPSS: 1.1% chance of exploitation in the next 30 days.

HUAWEI Mate 10 smartphones with versions earlier than ALP-AL00 8.1.0.311 have a use after free vulnerability on mediaserver component. An attacker tricks the user install a malicious application, which make the software to reference memory after it has been freed. Successful exploit could cause execution of arbitrary code.

Affected products

  • Huawei Mate 10 Firmware: before alp-al00_8.1.0.311 (fixed in alp-al00_8.1.0.311)

Published 2018-07-31. Last modified 2026-06-17.