CVE-2017-17306 is an array out-of-bounds read vulnerability affecting specific Huawei smartphone models (VNS-L21 series firmware). An attacker could exploit this by tricking a user into installing a malicious application, leading to the application reading outside of array boundaries and potentially causing device instability. Rated Medium severity (CVSS 5.5), it requires user interaction and local access, with a potential impact of denial of service. There is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
vns-l21autc555b141CPE matchmatch criteria | cpe:2.3:o:huawei:vns-l21_firmware:vns-l21autc555b141:*:*:*:*:*:*:* | ||
vns-l21c10b160CPE matchmatch criteria | cpe:2.3:o:huawei:vns-l21_firmware:vns-l21c10b160:*:*:*:*:*:*:* | ||
vns-l21c66b160CPE matchmatch criteria | cpe:2.3:o:huawei:vns-l21_firmware:vns-l21c66b160:*:*:*:*:*:*:* | ||
vns-l21c703b140CPE matchmatch criteria | cpe:2.3:o:huawei:vns-l21_firmware:vns-l21c703b140:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.