CVE-2017-2698 describes a buffer overflow vulnerability in the ddr_devfreq driver affecting Huawei P8 and its firmware versions prior to GRA-UL00C00B197. This high-severity flaw (CVSS 7.8) allows an attacker with root privileges on the Android system to trick a user into installing a malicious application, potentially leading to system crashes or privilege escalation. While the vulnerability requires user interaction and local access, its impact is significant. There is no public exploit code available, nor is there evidence of active exploitation or significant community discussion.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< gra-ul00c00b197CPE matchmatch criteria | cpe:2.3:o:huawei:p8_firmware:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.