← Vulnerability feed

Vulnerability record · CVE-2020-9247 · published 7 December 2020

CVE-2020-9247: Huawei honor 20 pro firmware classic buffer overflow vulnerability

Huawei · Honor 20 Pro Firmware

There is a buffer overflow vulnerability in several Huawei products. The system does not sufficiently validate certain configuration parameter which is passed from user that would cause buffer overflow. The attacker should trick the user into installing and running a malicious application with a high privilege, successful exploit may cause code execution. Affected product include Huawei HONOR 20 PRO, Mate 20, Mate 20 Pro, Mate 20 X, P30, P30 Pro, Hima-L29C, Laya-AL00EP, Princeton-AL10B, Tony-AL00B, Yale-L61A, Yale-TL00B and YaleP-AL10B.

7.8 CVSS 3.1 High EPSS 0.83% · top 43.8% CWE-120 · Classic buffer overflow
7.8CVSS 3.1 base score, v2 6.8
0.83%EPSS exploitation probability, 30 days
NoNot in CISA KEV
13Affected product versions listed by NVD
2References
17 Jun 2026Last modified by NVD

Description

There is a buffer overflow vulnerability in several Huawei products. The system does not sufficiently validate certain configuration parameter which is passed from user that would cause buffer overflow. The attacker should trick the user into installing and running a malicious application with a high privilege, successful exploit may cause code execution. Affected product include Huawei HONOR 20 PRO, Mate 20, Mate 20 Pro, Mate 20 X, P30, P30 Pro, Hima-L29C, Laya-AL00EP, Princeton-AL10B, Tony-AL00B, Yale-L61A, Yale-TL00B and YaleP-AL10B.

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Affected products

13 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2020-9247 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

7.8CVE-2020-0069MediaTek Command Queue driver out-of-bounds write in Android kernelThe ioctl handlers in the MediaTek Command Queue driver fail to sanitize input and lack SELinux restrictions, allowing an out-of-bounds write in the …KEVEPSS 1.4%analysed8.8CVE-2020-0022Google android vulnerabilityIn reassemble_and_dispatch of packet_fragmenter.cc, there is possible out of bounds write due to an incorrect bounds calculation. This could lead to …EPSS 6.1%8.1CVE-2019-9506Google android broken cryptographic algorithm vulnerabilityThe Bluetooth BR/EDR specification up to and including version 5.1 permits sufficiently low encryption key length and does not prevent an attacker fr…EPSS 2.7%8.0CVE-2020-9113Huawei mate 20 firmware classic buffer overflow vulnerabilityHUAWEI Mate 20 versions earlier than 10.0.0.188(C00E74R3P8) have a buffer overflow vulnerability in the Bluetooth module. Due to insufficient input v…EPSS 0.45%7.8CVE-2020-9080Huawei mate 20 pro firmware improper privilege management vulnerabilityThere is an improper privilege management vulnerability in Huawei smart phone product. A local, authenticated attacker could craft a specific input t…EPSS 0.13%7.8CVE-2019-5250Huawei mate 20 pro firmware improper privilege management vulnerabilityMate 20 Pro smartphones with versions earlier than 9.1.0.135(C00E133R3P1) have an improper authorization vulnerability. The software does not properl…EPSS 0.60%7.8CVE-2019-5225Huawei p30 firmware classic buffer overflow vulnerabilityP30, Mate 20, P30 Pro smartphones with software of versions earlier than ELLE-AL00B 9.1.0.193(C00E190R1P21), versions earlier than Hima-AL00B 9.1.0.1…EPSS 0.83%7.8CVE-2019-5282Huawei emily-al00a firmware double free vulnerabilityBastet module of some Huawei smartphones with Versions earlier than Emily-AL00A 9.0.0.182(C00E82R1P21), Versions earlier than Emily-TL00B 9.0.0.182(C…EPSS 0.79%

Source: NIST National Vulnerability Database (record CVE-2020-9247), CISA KEV, FIRST EPSS (scores of 2026-10-07). This page is refreshed as NVD updates the record.