← Vulnerability feed

Vulnerability record · CVE-2020-1808 · published 15 May 2020

CVE-2020-1808: Huawei honor view 20 firmware out-of-bounds read vulnerability

Huawei · Honor View 20 Firmware

Honor 20;HONOR 20 PRO;Honor Magic2;HUAWEI Mate 20 X;HUAWEI P30;HUAWEI P30 Pro;Honor View 20 smartphones with versions earlier than 10.0.0.187(C00E60R4P11); versions earlier than 10.0.0.187(C00E60R4P11); versions earlier than 10.0.0.176(C00E60R2P11);9.1.0.135(C00E133R2P1); versions earlier than 10.1.0.123(C431E22R3P5), versions earlier than 10.1.0.126(C636E5R3P4), versions earlier than 10.1.0.160(C00E160R2P11); versions earlier than 10.1.0.126(C185E8R5P1), versions earlier than 10.1.0.126(C636E9R2P4), versions earlier than 10.1.0.160(C00E160R2P8); versions earlier than 10.0.0.179(C636E3R4P3), versions earlier than 10.0.0.180(C185E3R3P3), versions earlier than 10.0.0.180(C432E10R3P4), versions earlier than 10.0.0.181(C675E5R1P2) have an out of bound read vulnerability. The software reads data past the end of the intended buffer. The attacker tricks the user into installing a crafted application, successful exploit may cause information disclosure or service abnormal.

7.1 CVSS 3.1 High EPSS 0.54% · top 56.4% CWE-125 · Out-of-bounds read
7.1CVSS 3.1 base score, v2 5.8
0.54%EPSS exploitation probability, 30 days
NoNot in CISA KEV
4Affected product versions listed by NVD
2References
17 Jun 2026Last modified by NVD

Description

Honor 20;HONOR 20 PRO;Honor Magic2;HUAWEI Mate 20 X;HUAWEI P30;HUAWEI P30 Pro;Honor View 20 smartphones with versions earlier than 10.0.0.187(C00E60R4P11); versions earlier than 10.0.0.187(C00E60R4P11); versions earlier than 10.0.0.176(C00E60R2P11);9.1.0.135(C00E133R2P1); versions earlier than 10.1.0.123(C431E22R3P5), versions earlier than 10.1.0.126(C636E5R3P4), versions earlier than 10.1.0.160(C00E160R2P11); versions earlier than 10.1.0.126(C185E8R5P1), versions earlier than 10.1.0.126(C636E9R2P4), versions earlier than 10.1.0.160(C00E160R2P8); versions earlier than 10.0.0.179(C636E3R4P3), versions earlier than 10.0.0.180(C185E3R3P3), versions earlier than 10.0.0.180(C432E10R3P4), versions earlier than 10.0.0.181(C675E5R1P2) have an out of bound read vulnerability. The software reads data past the end of the intended buffer. The attacker tricks the user into installing a crafted application, successful exploit may cause information disclosure or service abnormal.

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:H

Affected products

4 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2020-1808 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

7.8CVE-2020-0069MediaTek Command Queue driver out-of-bounds write in Android kernelThe ioctl handlers in the MediaTek Command Queue driver fail to sanitize input and lack SELinux restrictions, allowing an out-of-bounds write in the …KEVEPSS 1.4%analysed7.8CVE-2019-2215Android Binder use-after-free allows kernel privilege escalationCVE-2019-2215 is a use-after-free in binder.c in the Android/Linux kernel that lets a local application escalate privileges to the kernel. It matters…KEVEPSS 72%analysed8.8CVE-2020-0022Google android vulnerabilityIn reassemble_and_dispatch of packet_fragmenter.cc, there is possible out of bounds write due to an incorrect bounds calculation. This could lead to …EPSS 6.1%8.1CVE-2019-9506Google android broken cryptographic algorithm vulnerabilityThe Bluetooth BR/EDR specification up to and including version 5.1 permits sufficiently low encryption key length and does not prevent an attacker fr…EPSS 2.7%7.8CVE-2020-9247Huawei honor 20 pro firmware classic buffer overflow vulnerabilityThere is a buffer overflow vulnerability in several Huawei products. The system does not sufficiently validate certain configuration parameter which …EPSS 0.83%7.5CVE-2020-9223Huawei honor 20 pro firmware vulnerabilityThere is a denial of service vulnerability in some Huawei smartphones. Due to the improper processing of received abnormal messages, remote attackers…EPSS 0.89%6.8CVE-2020-9244Huawei mate 20 firmware vulnerabilityHUAWEI Mate 20 versions Versions earlier than 10.1.0.160(C00E160R3P8);HUAWEI Mate 20 Pro versions Versions earlier than 10.1.0.270(C431E7R1P5),Versio…EPSS 0.23%5.5CVE-2020-9235Huawei honor 20 pro firmware improper input validation vulnerabilityHuawei smartphones HONOR 20 PRO Versions earlier than 10.1.0.230(C432E9R5P1),Versions earlier than 10.1.0.231(C10E3R3P2),Versions earlier than 10.1.0…EPSS 0.24%

Source: NIST National Vulnerability Database (record CVE-2020-1808), CISA KEV, FIRST EPSS (scores of 2026-10-07). This page is refreshed as NVD updates the record.