CVE-2017-8159 is a type confusion vulnerability affecting specific Huawei smartphone models (AGS-L09C233B019, AGS-W09C233B019, KOB-L09C233B017, KOB-W09C233B012). This flaw arises when a variable is initialized with one type but later accessed with a different type during certain register operations. With a CVSS score of 7.8 (High), successful exploitation could lead to a buffer overflow and potentially arbitrary code execution, requiring user interaction (UI:R) to trigger. There is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion surrounding this vulnerability.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
ags-l09c233b019CPE matchmatch criteria | cpe:2.3:o:huawei:agassi-l09hn_firmware:ags-l09c233b019:*:*:*:*:*:*:* | ||
ags-w09c233b019CPE matchmatch criteria | cpe:2.3:o:huawei:agassi-w09hn_firmware:ags-w09c233b019:*:*:*:*:*:*:* | ||
kob-l09c233b017CPE matchmatch criteria | cpe:2.3:o:huawei:kobe-l09ahn_firmware:kob-l09c233b017:*:*:*:*:*:*:* | ||
kob-w09c233b012CPE matchmatch criteria | cpe:2.3:o:huawei:kobe-w09chn_firmware:kob-w09c233b012:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.