CVE-2019-5260: Huawei View 20 Firmware
Medium severity, CVSS 6.5. EPSS: 0.3% chance of exploitation in the next 30 days.
Huawei smartphones HUAWEI Y9 2019 and Honor View 20 have a denial of service vulnerability. Due to insufficient input validation of specific value when parsing the messages, an attacker may send specially crafted TD-SCDMA messages from a rogue base station to the affected devices to exploit this vulnerability. Successful exploit may cause an infinite loop and the device to reboot.
Affected products
- Huawei View 20 Firmware: version 9.0.1.169(c636e1r4p1) only; version 9.0.1.170(c185e2r3p1) only; version 9.0.1.170(c432e1r3p1) only
- Huawei y9 2019 Firmware: version 8.2.0.160(c185r2p2) only; version 8.2.0.162(c605) only; version 8.2.0.163(c605) only
Published 2019-12-13. Last modified 2026-06-17.