« Back to list

Huawei

Huawei Katyusha-al00a Firmware: vulnerabilities and CVEs

Huawei Katyusha-al00a Firmware has 2 published vulnerabilities, 0 of them in the last 12 months. 0 are rated critical and 1 are listed by CISA as actively exploited.

CVEs2
Last 12 months0
Critical0
Actively exploited1

All vulnerabilities in the catalogue →⭐ Follow this technology

🔴 Actively exploited (CISA KEV)

CVESeverityEPSSActive exploitationPublishedDescription
CVE-2020-0069High (7.8)1.4%⚠ Active exploitationMar 10, 2020
In the ioctl handlers of the Mediatek Command Queue driver, there is a possible out of bounds write due to insufficient input sanitization and missing SELinux restrictions. This could lead to local escalation of…

Latest vulnerabilities

CVESeverityEPSSActive exploitationPublishedDescription
CVE-2020-0069High (7.8)1.4%⚠ Active exploitationMar 10, 2020
In the ioctl handlers of the Mediatek Command Queue driver, there is a possible out of bounds write due to insufficient input sanitization and missing SELinux restrictions. This could lead to local escalation of…
CVE-2019-9506High (8.1)2.7%—Aug 14, 2019
The Bluetooth BR/EDR specification up to and including version 5.1 permits sufficiently low encryption key length and does not prevent an attacker from influencing the key length negotiation. This allows practical…

🎯 How it gets exploited (ATT&CK techniques)

  1. T1068 Exploitation for Privilege Escalation1

Number of CVEs of this technology mapped to each exploitation or primary-impact technique.

Other products by Huawei