CVE-2021-22302: High severity huawei taurus-al00a firmware vulnerability
There is an out-of-bound read vulnerability in Taurus-AL00A 10.0.0.1(C00E1R1P1). A module does not verify the some input. Attackers can exploit this vulnerability by sending malicious input through specific app. This could cause out-of-bound, compromising normal service.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-22302?
CVE-2021-22302 is an out-of-bound read vulnerability in Huawei Taurus-AL00A 10.0.0.1(C00E1R1P1) firmware.
How does CVE-2021-22302 affect Huawei Taurus-AL00A?
CVE-2021-22302 allows attackers to exploit the out-of-bound read vulnerability in Huawei Taurus-AL00A 10.0.0.1(C00E1R1P1) firmware by sending malicious input through a specific app, compromising normal service.
What is the severity of CVE-2021-22302?
CVE-2021-22302 has a severity rating of 7.1, which is considered high.
How can I fix CVE-2021-22302?
To fix CVE-2021-22302, it is recommended to update the Huawei Taurus-AL00A firmware to a version that addresses the vulnerability.
Where can I find more information about CVE-2021-22302?
More information about CVE-2021-22302 can be found in Huawei's security advisory at https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20210127-01-smartphone-en.