CVE-2022-41597Out-of-bounds Read in Huawei Emui

Severity
3.4LOWNVD
EPSS
0.0%
top 94.15%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedOct 14

Description

The phones have the heap overflow, out-of-bounds read, and null pointer vulnerabilities in the fingerprint trusted application (TA).Successful exploitation of this vulnerability may affect the fingerprint service.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:LExploitability: 0.8 | Impact: 2.5

Affected Packages4 packages

CVEListV5huawei/emui11.0.1, 12.0.0+1
NVDhuawei/emui11.0.1, 12.0.0+1
CVEListV5huawei/harmonyos2.0

🔴Vulnerability Details

2
GHSA
GHSA-2wrc-685p-7pgf: The phones have the heap overflow, out-of-bounds read, and null pointer vulnerabilities in the fingerprint trusted application (TA)2022-10-14
CVEList
CVE-2022-41597: The phones have the heap overflow, out-of-bounds read, and null pointer vulnerabilities in the fingerprint trusted application (TA)2022-10-14
CVE-2022-41597 — Out-of-bounds Read in Huawei Emui | cvebase