CVE-2022-46315Uncontrolled Resource Consumption in Huawei Harmonyos

Severity
7.5HIGHNVD
EPSS
0.3%
top 50.39%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedDec 20

Description

The ProfileSDK has defects introduced in the design process. Successful exploitation of this vulnerability may affect system availability.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:HExploitability: 3.9 | Impact: 3.6

Affected Packages3 packages

NVDhuawei/harmonyos< 2.1
CVEListV5huawei/emui12.0.0, 12.0.1+1
CVEListV5huawei/harmonyos4 versions+3

Patches

🔴Vulnerability Details

2
CVEList
CVE-2022-46315: The ProfileSDK has defects introduced in the design process2022-12-20
GHSA
GHSA-mccx-hvr6-hc7g: The ProfileSDK has defects introduced in the design process2022-12-20
CVE-2022-46315 — Uncontrolled Resource Consumption | cvebase