Some Huawei smart phones with software Berlin-L21C10B130,Berlin-L21C185B133,Berlin-L21HNC10B131,Berlin-L21HNC185B140,Berlin-L21HNC432B151,Berlin-L22C636B160,Berlin-L22HNC636B130,Berlin-L22HNC675B150CUSTC675D001,Berlin-L23C605B131,Berlin-L24HNC567B110,FRD-L02C432B120,FRD-L02C635B130,FRD-L02C675B170CUSTC675D001,FRD-L04C567B162,FRD-L04C605B131,FRD-L09C10B130,FRD-L09C185B130,FRD-L09C432B131,FRD-L09C636B130,FRD-L14C567B162,FRD-L19C10B130,FRD-L19C432B131,FRD-L19C636B130 have a factory Reset Protection (FRP) bypass security vulnerability. When re-configuring the mobile phone using the factory reset protection (FRP) function, an attacker can login the configuration flow by Swype Keyboard and can perform some operations to update the Google account. As a result, the FRP function is bypassed.
Project Subscriptions
| Vendors | Products |
|---|---|
|
Huawei
Subscribe
|
Berlin-l21
Subscribe
Berlin-l21 Firmware
Subscribe
Berlin-l21hn
Subscribe
Berlin-l21hn Firmware
Subscribe
Berlin-l22
Subscribe
Berlin-l22 Firmware
Subscribe
Berlin-l22hn
Subscribe
Berlin-l22hn Firmware
Subscribe
Berlin-l23
Subscribe
Berlin-l23 Firmware
Subscribe
Berlin-l24hn
Subscribe
Berlin-l24hn Firmware
Subscribe
Frd-l02
Subscribe
Frd-l02 Firmware
Subscribe
Frd-l04
Subscribe
Frd-l04 Firmware
Subscribe
Frd-l09
Subscribe
Frd-l09 Firmware
Subscribe
Frd-l14
Subscribe
Frd-l14 Firmware
Subscribe
Frd-l19
Subscribe
Frd-l19 Firmware
Subscribe
|
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2017-11864 | Some Huawei smart phones with software Berlin-L21C10B130,Berlin-L21C185B133,Berlin-L21HNC10B131,Berlin-L21HNC185B140,Berlin-L21HNC432B151,Berlin-L22C636B160,Berlin-L22HNC636B130,Berlin-L22HNC675B150CUSTC675D001,Berlin-L23C605B131,Berlin-L24HNC567B110,FRD-L02C432B120,FRD-L02C635B130,FRD-L02C675B170CUSTC675D001,FRD-L04C567B162,FRD-L04C605B131,FRD-L09C10B130,FRD-L09C185B130,FRD-L09C432B131,FRD-L09C636B130,FRD-L14C567B162,FRD-L19C10B130,FRD-L19C432B131,FRD-L19C636B130 have a factory Reset Protection (FRP) bypass security vulnerability. When re-configuring the mobile phone using the factory reset protection (FRP) function, an attacker can login the configuration flow by Swype Keyboard and can perform some operations to update the Google account. As a result, the FRP function is bypassed. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: huawei
Published:
Updated: 2024-09-16T19:56:17.268Z
Reserved: 2016-12-01T00:00:00.000Z
Link: CVE-2017-2721
No data.
Status : Deferred
Published: 2017-11-22T19:29:01.397
Modified: 2025-04-20T01:37:25.860
Link: CVE-2017-2721
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD