First published: Fri Sep 16 2022(Updated: )
The secure OS module has configuration defects. Successful exploitation of this vulnerability may affect data confidentiality.
Credit: psirt@huawei.com
Affected Software | Affected Version | How to fix |
---|---|---|
Huawei EMUI | =10.1.0 | |
Huawei EMUI | =10.1.1 | |
Huawei EMUI | =11.0.0 | |
Huawei EMUI | =12.0.0 | |
Huawei HarmonyOS | =2.0 | |
Huawei HarmonyOS | =2.1 | |
Huawei Magic UI | =3.1.0 | |
Huawei Magic UI | =3.1.1 | |
Huawei Magic UI | =4.0.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-38979 is classified as a high severity vulnerability impacting data confidentiality.
To fix CVE-2022-38979, update your Huawei device to the latest firmware version as specified by the manufacturer.
CVE-2022-38979 affects Huawei devices running EMUI versions 10.1.0, 10.1.1, 11.0.0, and 12.0.0 as well as HarmonyOS and Magic UI versions 2.0, 2.1, 3.1.0, 3.1.1, and 4.0.0.
Successful exploitation of CVE-2022-38979 may lead to unauthorized access to sensitive data, compromising data confidentiality.
As of the last reports, there is no public evidence indicating that CVE-2022-38979 is being actively exploited in the wild.