« Volver al listado

CVE-2021-22399

Estado: ModificadaMedia (5.5)—

The Bluetooth function of some Huawei smartphones has a DoS vulnerability. Attackers can install third-party apps to send specific broadcasts, causing the Bluetooth module to crash. This vulnerability is successfully exploited to cause the Bluetooth function to become abnormal. Affected product versions include: HUAWEI P30 10.0.0.195(C432E22R2P5), 10.0.0.200(C00E85R2P11), 10.0.0.200(C461E6R3P1), 10.0.0.201(C10E7R5P1), 10.0.0.201(C185E4R7P1), 10.0.0.206(C605E19R1P3), 10.0.0.209(C636E6R3P4), 10.0.0.210(C635E3R2P4), and versions earlier than 10.1.0.165(C01E165R2P11).

CVSS

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (1)

CWE

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2021-22399",
  "cveTags": [],
  "metrics": {
    "cvssMetricV2": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "version": "2.0",
          "baseScore": 2.1,
          "accessVector": "LOCAL",
          "vectorString": "AV:L/AC:L/Au:N/C:N/I:N/A:P",
          "authentication": "NONE",
          "integrityImpact": "NONE",
          "accessComplexity": "LOW",
          "availabilityImpact": "PARTIAL",
          "confidentialityImpact": "NONE"
        },
        "acInsufInfo": false,
        "impactScore": 2.9,
        "baseSeverity": "LOW",
        "obtainAllPrivilege": false,
        "exploitabilityScore": 3.9,
        "obtainUserPrivilege": false,
        "obtainOtherPrivilege": false,
        "userInteractionRequired": false
      }
    ],
    "cvssMetricV31": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "scope": "UNCHANGED",
          "version": "3.1",
          "baseScore": 5.5,
          "attackVector": "LOCAL",
          "baseSeverity": "MEDIUM",
          "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H",
          "integrityImpact": "NONE",
          "userInteraction": "NONE",
          "attackComplexity": "LOW",
          "availabilityImpact": "HIGH",
          "privilegesRequired": "LOW",
          "confidentialityImpact": "NONE"
        },
        "impactScore": 3.6,
        "exploitabilityScore": 1.8
      }
    ]
  },
  "affected": [
    {
      "source": "psirt@huawei.com",
      "affectedData": [
        {
          "vendor": "n/a",
          "product": "HUAWEI P30",
          "versions": [
            {
              "status": "affected",
              "version": "10.0.0.195(C432E22R2P5),10.0.0.200(C00E85R2P11),10.0.0.200(C461E6R3P1),10.0.0.201(C10E7R5P1),10.0.0.201(C185E4R7P1),10.0.0.206(C605E19R1P3),10.0.0.209(C636E6R3P4),10.0.0.210(C635E3R2P4),Versions earlier than 10.1.0.165(C01E165R2P11)"
            }
          ]
        }
      ]
    }
  ],
  "published": "2021-07-13T12:15:09.820",
  "references": [
    {
      "url": "https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20210707-03-dos-en",
      "tags": [
        "Vendor Advisory"
      ],
      "source": "psirt@huawei.com"
    },
    {
      "url": "https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20210707-03-dos-en",
      "tags": [
        "Vendor Advisory"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    }
  ],
  "vulnStatus": "Modified",
  "weaknesses": [
    {
      "type": "Primary",
      "source": "nvd@nist.gov",
      "description": [
        {
          "lang": "en",
          "value": "NVD-CWE-noinfo"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "The Bluetooth function of some Huawei smartphones has a DoS vulnerability. Attackers can install third-party apps to send specific broadcasts, causing the Bluetooth module to crash. This vulnerability is successfully exploited to cause the Bluetooth function to become abnormal. Affected product versions include: HUAWEI P30 10.0.0.195(C432E22R2P5), 10.0.0.200(C00E85R2P11), 10.0.0.200(C461E6R3P1), 10.0.0.201(C10E7R5P1), 10.0.0.201(C185E4R7P1), 10.0.0.206(C605E19R1P3), 10.0.0.209(C636E6R3P4), 10.0.0.210(C635E3R2P4), and versions earlier than 10.1.0.165(C01E165R2P11)."
    },
    {
      "lang": "es",
      "value": "La función Bluetooth de algunos smartphones de Huawei presenta una vulnerabilidad DoS. Los atacantes pueden instalar aplicaciones de terceros para enviar transmisiones específicas, causando un bloqueo al módulo Bluetooth. Esta vulnerabilidad es explotada con éxito para causar que la función Bluetooth se vuelva anormal. Las versiones de producto afectadas incluyen: HUAWEI P30 versión 10.0.0.195(C432E22R2P5), versión 10.0.0.200(C00E85R2P11), versión 10.0.0.200(C461E6R3P1), versión 10.0.0.201(C10E7R5P1), versión 10.0.0.201(C185E4R7P1), versión 10. Versión 0.0.206(C605E19R1P3), versión 10.0.0.209(C636E6R3P4), versión 10.0.0.210(C635E3R2P4), y versiones anteriores a  10.1.0.165(C01E165R2P11)"
    }
  ],
  "lastModified": "2026-06-17T03:37:09.590",
  "configurations": [
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:o:huawei:p30_firmware:10.0.0.195\\(c432e22r2p5\\):*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "91183616-37B2-4A12-8618-CC67E5599A0D"
            },
            {
              "criteria": "cpe:2.3:o:huawei:p30_firmware:10.0.0.200\\(c00e85r2p11\\):*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "D7CC6D39-258F-467B-8F30-8156AAE82E89"
            },
            {
              "criteria": "cpe:2.3:o:huawei:p30_firmware:10.0.0.200\\(c461e6r3p1\\):*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "462708E7-4D60-4786-B2B0-966FC2234BF6"
            },
            {
              "criteria": "cpe:2.3:o:huawei:p30_firmware:10.0.0.201\\(c10e7r5p1\\):*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "730A2C08-9C3E-4794-9876-206164AADAD2"
            },
            {
              "criteria": "cpe:2.3:o:huawei:p30_firmware:10.0.0.201\\(c185e4r7p1\\):*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "DA40C584-80A1-49A5-A346-7F316A4640FB"
            },
            {
              "criteria": "cpe:2.3:o:huawei:p30_firmware:10.0.0.206\\(c605e19r1p3\\):*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "6474BF29-4980-45AC-A5BE-463E37EDC828"
            },
            {
              "criteria": "cpe:2.3:o:huawei:p30_firmware:10.0.0.209\\(c636e6r3p4\\):*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "731B92DD-7072-421E-B4FE-088E5FCE0805"
            },
            {
              "criteria": "cpe:2.3:o:huawei:p30_firmware:10.0.0.210\\(c635e3r2p4\\):*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "7D840C42-60E5-4E0D-892F-8D90ED74FD55"
            }
          ],
          "operator": "OR"
        },
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:h:huawei:p30:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "21EE286C-8111-4F59-8CF1-13C68EA76B21"
            }
          ],
          "operator": "OR"
        }
      ],
      "operator": "AND"
    },
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:o:huawei:p30_firmware:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "8A7CBB9B-878D-48E6-9AB2-F69FE744065D",
              "versionEndExcluding": "10.1.0.165\\(c01e165r2p11\\)"
            }
          ],
          "operator": "OR"
        },
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:h:huawei:p30:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "21EE286C-8111-4F59-8CF1-13C68EA76B21"
            }
          ],
          "operator": "OR"
        }
      ],
      "operator": "AND"
    }
  ],
  "sourceIdentifier": "psirt@huawei.com"
}