CVE-2021-22294: Low severity harmonyos vulnerability
Published Mar 2, 2021
·Updated
A component API of the HarmonyOS 2.0 has a permission bypass vulnerability. Local attackers may exploit this vulnerability to issue commands repeatedly, exhausting system service resources.
Affected Software
1 affected component
Huawei Harmonyos=2.0
Event History
Mar 2, 2021
CVE Published
via MITRE·06:11 PM
Data Sourced
via MITRE·06:11 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2021-22294?
CVE-2021-22294 has a medium severity rating due to its potential impact on system service resources.
2
How do I fix CVE-2021-22294?
To fix CVE-2021-22294, update the HarmonyOS 2.0 to the latest version provided by Huawei.
3
What systems are affected by CVE-2021-22294?
CVE-2021-22294 affects Huawei HarmonyOS version 2.0.
4
What kind of attacks can exploit CVE-2021-22294?
Local attackers can exploit CVE-2021-22294 to issue commands repeatedly, leading to resource exhaustion.
5
Can CVE-2021-22294 be exploited remotely?
CVE-2021-22294 requires local access, so it cannot be exploited remotely.