First published: Mon Mar 07 2022(Updated: )
There is a vulnerability of memory not being released after effective lifetime in the Bastet module. Successful exploitation of this vulnerability may affect integrity.
Credit: psirt@huawei.com
Affected Software | Affected Version | How to fix |
---|---|---|
Huawei EMUI | =10.0.0 | |
Huawei EMUI | =10.1.0 | |
Huawei EMUI | =10.1.1 | |
Huawei EMUI | =11.0.0 | |
Huawei EMUI | =11.0.1 | |
Huawei EMUI | =12.0.0 | |
Huawei HarmonyOS | =2.0 | |
Huawei Magic UI | =3.0.0 | |
Huawei Magic UI | =3.1.0 | |
Huawei Magic UI | =3.1.1 | |
Huawei Magic UI | =4.0.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-40047 has a medium severity rating due to the potential impact on system integrity.
CVE-2021-40047 affects Huawei EMUI versions 10.0.0, 10.1.0, 10.1.1, 11.0.0, 11.0.1, and 12.0.0, as well as Huawei HarmonyOS 2.0 and Magic UI versions 3.0.0, 3.1.0, 3.1.1, and 4.0.0.
To fix CVE-2021-40047, upgrade your affected software to the latest patched version provided by Huawei.
CVE-2021-40047 is a memory management vulnerability that allows for memory not being released after its effective lifetime.
If exploited, CVE-2021-40047 may negatively affect the integrity of the affected systems.