CVE-2019-5296 is an out-of-bounds read vulnerability affecting Huawei Mate 20 smartphones running firmware versions earlier than HMA-AL00C00B175. This vulnerability allows a high-privileged attacker to execute specific commands, leading to an out-of-bounds memory read and potential system abnormality due to insufficient input verification. The CVSS score is 3.9 (LOW), indicating a physical attack vector with low complexity, high privileges required, and a high impact on availability. There is no evidence of active exploitation, publicly available exploit code, or significant community discussion surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< hma-al00c00b175CPE matchmatch criteria | cpe:2.3:o:huawei:mate20_firmware:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:P/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.0 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.