First published: Fri Oct 14 2022(Updated: )
The HW_KEYMASTER module has a vulnerability of missing bounds check on length.Successful exploitation of this vulnerability may cause malicious construction of data, which results in out-of-bounds access.
Credit: psirt@huawei.com
Affected Software | Affected Version | How to fix |
---|---|---|
EMUI 5.0 | =11.0.1 | |
EMUI 5.0 | =12.0.0 | |
HarmonyOS | =2.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-46839 is considered a moderate severity vulnerability due to the potential for out-of-bounds access.
To mitigate CVE-2021-46839, it is recommended to update affected Huawei devices to the latest software versions that address the vulnerability.
CVE-2021-46839 affects Huawei EMUI versions 11.0.1 and 12.0.0, as well as HarmonyOS version 2.0.
CVE-2021-46839 is a bounds checking vulnerability that can lead to out-of-bounds access.
The potential for remote exploitation of CVE-2021-46839 depends on the specific conditions of data construction by a malicious actor.