« Volver al listado

CVE-2015-8337

Estado: ModificadaMedia (5.5)—

The HIFI driver in Huawei P8 phones with software GRA-TL00 before GRA-TL00C01B220SP01, GRA-CL00 before GRA-CL00C92B220, GRA-CL10 before GRA-CL10C92B220, GRA-UL00 before GRA-UL00C00B220, GRA-UL10 before GRA-UL10C00B220 and Mate7 phones with software MT7-UL00 before MT7-UL00C17B354, MT7-TL10 before MT7-TL10C00B354, MT7-TL00 before MT7-TL00C01B354, and MT7-CL00 before MT7-CL00C92B354 allows remote attackers to cause a denial of service (invalid memory access and reboot) via unspecified vectors related to "input null pointer as parameter."

CVSS

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (2)

CWE

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2015-8337",
  "cveTags": [],
  "metrics": {
    "cvssMetricV2": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "version": "2.0",
          "baseScore": 7.1,
          "accessVector": "NETWORK",
          "vectorString": "AV:N/AC:M/Au:N/C:N/I:N/A:C",
          "authentication": "NONE",
          "integrityImpact": "NONE",
          "accessComplexity": "MEDIUM",
          "availabilityImpact": "COMPLETE",
          "confidentialityImpact": "NONE"
        },
        "acInsufInfo": false,
        "impactScore": 6.9,
        "baseSeverity": "HIGH",
        "obtainAllPrivilege": false,
        "exploitabilityScore": 8.6,
        "obtainUserPrivilege": false,
        "obtainOtherPrivilege": false,
        "userInteractionRequired": true
      }
    ],
    "cvssMetricV30": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "scope": "UNCHANGED",
          "version": "3.0",
          "baseScore": 5.5,
          "attackVector": "LOCAL",
          "baseSeverity": "MEDIUM",
          "vectorString": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H",
          "integrityImpact": "NONE",
          "userInteraction": "REQUIRED",
          "attackComplexity": "LOW",
          "availabilityImpact": "HIGH",
          "privilegesRequired": "NONE",
          "confidentialityImpact": "NONE"
        },
        "impactScore": 3.6,
        "exploitabilityScore": 1.8
      }
    ]
  },
  "affected": [
    {
      "source": "cve@mitre.org",
      "affectedData": [
        {
          "vendor": "n/a",
          "product": "n/a",
          "versions": [
            {
              "status": "affected",
              "version": "n/a"
            }
          ]
        }
      ]
    }
  ],
  "published": "2016-01-12T19:59:10.037",
  "references": [
    {
      "url": "http://www.huawei.com/en/psirt/security-advisories/hw-465304",
      "tags": [
        "Vendor Advisory"
      ],
      "source": "cve@mitre.org"
    },
    {
      "url": "http://www.securityfocus.com/bid/80357",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://www.huawei.com/en/psirt/security-advisories/hw-465304",
      "tags": [
        "Vendor Advisory"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.securityfocus.com/bid/80357",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    }
  ],
  "vulnStatus": "Modified",
  "weaknesses": [
    {
      "type": "Primary",
      "source": "nvd@nist.gov",
      "description": [
        {
          "lang": "en",
          "value": "NVD-CWE-Other"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "The HIFI driver in Huawei P8 phones with software GRA-TL00 before GRA-TL00C01B220SP01, GRA-CL00 before GRA-CL00C92B220, GRA-CL10 before GRA-CL10C92B220, GRA-UL00 before GRA-UL00C00B220, GRA-UL10 before GRA-UL10C00B220 and Mate7 phones with software MT7-UL00 before MT7-UL00C17B354, MT7-TL10 before MT7-TL10C00B354, MT7-TL00 before MT7-TL00C01B354, and MT7-CL00 before MT7-CL00C92B354 allows remote attackers to cause a denial of service (invalid memory access and reboot) via unspecified vectors related to \"input null pointer as parameter.\""
    },
    {
      "lang": "es",
      "value": "El controlador HIFI en teléfonos Huawei P8 con software GRA-TL00 en versiones anteriores a GRA-TL00C01B220SP01, GRA-CL00 en versiones anteriores a GRA-CL00C92B220, GRA-CL10 en versiones anteriores a GRA-CL10C92B220, GRA-UL00 en versiones anteriores a GRA-UL00C00B220, GRA-UL10 en versiones anteriores a GRA-UL10C00B220 y teléfono Mate7 con software MT7-UL00 en versiones anteriores a MT7-UL00C17B354, MT7-TL10 en versiones anteriores a MT7-TL10C00B354, MT7-TL00 en versiones anteriores a MT7-TL00C01B354 y MT7-CL00 en versiones anteriores a MT7-CL00C92B354 permite a atacantes remotos causar una denegación de servicio (acceso de memoria no válido y reinicio) a través de vectores no especificados relacionados con \"entrada de puntero nulo como parámetro.\""
    }
  ],
  "lastModified": "2026-06-17T00:34:20.820",
  "configurations": [
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:o:huawei:mate_7_firmware:mt7-cl00:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "58C7458C-3423-4516-95D8-3C56AC9C9C97"
            },
            {
              "criteria": "cpe:2.3:o:huawei:mate_7_firmware:mt7-tl00:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "2F45932B-FAB6-44D1-9480-3A86B248E37C"
            },
            {
              "criteria": "cpe:2.3:o:huawei:mate_7_firmware:mt7-tl10:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "5D60DEAA-6E4E-47D4-A09B-A41E49BE90C5"
            },
            {
              "criteria": "cpe:2.3:o:huawei:mate_7_firmware:mt7-ul00:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "4D6C1DB1-9BE9-4F39-AC4D-BFFE49231CDE"
            }
          ],
          "operator": "OR"
        },
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:h:huawei:mate_7:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "96DD6375-B6FF-4530-9A56-A171BC1E7E78"
            }
          ],
          "operator": "OR"
        }
      ],
      "operator": "AND"
    },
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:o:huawei:p8_firmware:gra-cl10:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "95A2D1FD-3FCB-484B-A995-3FC0732ECFE6"
            },
            {
              "criteria": "cpe:2.3:o:huawei:p8_firmware:gra-cl100:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "6C2F466E-299D-4DA7-93F5-8540C10AC726"
            },
            {
              "criteria": "cpe:2.3:o:huawei:p8_firmware:gra-tl00:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "2019AC75-E9C6-4AD0-B95F-2C4D03CCBBEC"
            },
            {
              "criteria": "cpe:2.3:o:huawei:p8_firmware:gra-ul10:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "4E8D0A98-4F0D-485F-97B9-252C3A198659"
            },
            {
              "criteria": "cpe:2.3:o:huawei:p8_firmware:gra-ul100:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "631A21B4-E4D8-485A-9C80-672287B95024"
            }
          ],
          "operator": "OR"
        },
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:h:huawei:p8:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "F43A4D21-F16A-4277-A7AF-9ADBC3429F4C"
            }
          ],
          "operator": "OR"
        }
      ],
      "operator": "AND"
    }
  ],
  "evaluatorComment": "<a href=\"https://cwe.mitre.org/data/definitions/476.html\">CWE-476: NULL Pointer Dereference</a>",
  "sourceIdentifier": "cve@mitre.org"
}