CVE-2016-8774
Last modified
CVE-2016-8774 is a vulnerability of currently unknown severity. The HIFI driver in Huawei Mate 8 phones with software versions before NXT-AL10C00B386, versions before NXT-CL00C92B386, versions before NXT-DL00C17B386, versions before NXT-TL00C01B386; Mate S phones with software Versions before CRR-CL00C92B368, Versions before CRR-CL20C92B368, Versions before CRR-TL00C01B368, Versions before CRR-UL00C00B368, Versions before CRR-UL20C00B368; P8 phones with software Versions before GRA-TL00C01B366, Versions before GRA-CL00C92B366, Versions before GRA-CL10C92B366, Versions before GRA-UL00C00B366, Versions before GRA-UL10C00B366; and P9 phones with software Versions before EVA-AL10C00B190, Versions before EVA-DL10C00B190, Versions before EVA-TL10C00B190, Versions before EVA-CL10C00B190 allows attackers to get root privilege or crash the system or execute arbitrary code, related to a buffer overflow.. EPSS estimates a 0.32% chance of exploitation in the next 30 days.
Description
The HIFI driver in Huawei Mate 8 phones with software versions before NXT-AL10C00B386, versions before NXT-CL00C92B386, versions before NXT-DL00C17B386, versions before NXT-TL00C01B386; Mate S phones with software Versions before CRR-CL00C92B368, Versions before CRR-CL20C92B368, Versions before CRR-TL00C01B368, Versions before CRR-UL00C00B368, Versions before CRR-UL20C00B368; P8 phones with software Versions before GRA-TL00C01B366, Versions before GRA-CL00C92B366, Versions before GRA-CL10C92B366, Versions before GRA-UL00C00B366, Versions before GRA-UL10C00B366; and P9 phones with software Versions before EVA-AL10C00B190, Versions before EVA-DL10C00B190, Versions before EVA-TL10C00B190, Versions before EVA-CL10C00B190 allows attackers to get root privilege or crash the system or execute arbitrary code, related to a buffer overflow.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Huawei | Mate 8 Firmware | All versions |
| Huawei | Mate S Firmware | All versions |
| Huawei | P8 Firmware | All versions |
| Huawei | P9 Firmware | All versions |
References
- http://www.securityfocus.com/bid/94503Third Party Advisory, VDB Entry
- http://www.securityfocus.com/bid/94503Third Party Advisory, VDB Entry
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2016-8774?
How severe is CVE-2016-8774?
How do I fix CVE-2016-8774?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2016
- CVE-2016-8768Huawei Honor 6, Honor 6 Plus, Honor 7 phones with software v…
- CVE-2016-8769Huawei UTPS earlier than UTPS-V200R003B015D16SPC00C983 has a…6.7
- CVE-2016-8770Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultID…
- CVE-2016-8771Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultID…
- CVE-2016-8772Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultID…
- CVE-2016-8773Huawei S5300 with software V200R003C00, V200R007C00, V200R00…
- CVE-2016-8775Touch Panel (TP) driver in Huawei NEM phones with software V…
- CVE-2016-8776Huawei P9 phones with software EVA-AL10C00,EVA-CL10C00,EVA-D…
- CVE-2016-8777Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultID…
- CVE-2016-8778Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultID…
- CVE-2016-8779Huawei FusionAccess with software V100R005C10 and V100R005C2…
- CVE-2016-8780Huawei CloudEngine 6800 V100R006C00, CloudEngine 7800 V100R0…
Are you affected by CVE-2016-8774?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
