The kernel server has a vulnerability of not verifying the length of the data transferred in the user space.Successful exploitation of this vulnerability may cause out-of-bounds read in the kernel, which affects the device confidentiality and availability.
References
Link | Resource |
---|---|
https://consumer.huawei.com/en/support/bulletin/2022/10/ | Vendor Advisory |
https://device.harmonyos.com/en/docs/security/update/security-bulletins-phones-202210-0000001416095697 | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: huawei
Published: 2022-10-14T00:00:00
Updated: 2022-10-14T00:00:00
Reserved: 2022-09-27T00:00:00
Link: CVE-2022-41577
JSON object: View
NVD Information
Status : Analyzed
Published: 2022-10-14T16:15:20.537
Modified: 2022-10-15T01:51:25.887
Link: CVE-2022-41577
JSON object: View
Redhat Information
No data.
CWE