First published: Fri Oct 14 2022(Updated: )
The rphone module has a script that can be maliciously modified.Successful exploitation of this vulnerability may cause irreversible programs to be implanted on user devices.
Credit: psirt@huawei.com
Affected Software | Affected Version | How to fix |
---|---|---|
EMUI 5.0 | =11.0.1 | |
EMUI 5.0 | =12.0.0 | |
HarmonyOS | =2.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-41576 is a vulnerability in the rphone module that allows malicious modification of a script, potentially leading to the implantation of irreversible programs on user devices.
CVE-2022-41576 has a severity rating of 7.8 (high).
Huawei Emui 11.0.1, Huawei Emui 12.0.0, and Huawei Harmonyos 2.0 are affected by CVE-2022-41576.
CVE-2022-41576 can be exploited by modifying the rphone module script in a malicious way.
You can find more information about CVE-2022-41576 at the following references: [Huawei Support Bulletin](https://consumer.huawei.com/en/support/bulletin/2022/10/) and [HarmonyOS Security Bulletins](https://device.harmonyos.com/en/docs/security/update/security-bulletins-phones-202210-0000001416095697).