CVE-2017-17324 is an integer overflow vulnerability in the camera driver of Huawei Mate 9 Pro smartphones running specific software versions (LON-AL00BC00B139D; LON-AL00BC00B229). This flaw, caused by inadequate validation of external input parameters, leads to a subsequent buffer overflow. With a CVSS score of 7.8 (HIGH), successful exploitation requires user interaction to install a crafted application, potentially leading to malicious code execution with high impact on confidentiality, integrity, and availability. There is currently no evidence of active exploitation, publicly available exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
lon-al00bc00b139dCPE matchmatch criteria | cpe:2.3:o:huawei:mate_9_pro_firmware:lon-al00bc00b139d:*:*:*:*:*:*:* | ||
lon-al00bc00b229CPE matchmatch criteria | cpe:2.3:o:huawei:mate_9_pro_firmware:lon-al00bc00b229:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.