CVE-2022-48478Huawei Harmonyos vulnerability

2 documents2 sources
Severity
9.8CRITICALNVD
EPSS
0.2%
top 58.80%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedMay 26

Description

The facial recognition TA of some products lacks memory length verification. Successful exploitation of this vulnerability may cause exceptions of the facial recognition service.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 3.9 | Impact: 5.9

Affected Packages2 packages

CVEListV5huawei/harmonyos2.0.0

🔴Vulnerability Details

1
GHSA
GHSA-6xpg-fr4j-p757: The facial recognition TA of some products lacks memory length verification2023-05-26