CVE-2022-41581: Critical severity Huawei Emui vulnerability
Published Oct 14, 2022
·Updated
The HWKEYMASTER module has a vulnerability of not verifying the data read.Successful exploitation of this vulnerability may cause malicious construction of data, which results in out-of-bounds access.
Affected Software
3 affected components
Huawei Emui=11.0.1
Huawei Emui=12.0.0
Huawei Harmonyos=2.0
Event History
Oct 14, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionWeakness
Data Sourced
via NVD·04:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2022-41581?
CVE-2022-41581 is classified as a medium severity vulnerability due to the risk of out-of-bounds access.
2
How do I fix CVE-2022-41581?
To fix CVE-2022-41581, update your affected Huawei devices to the latest version of EMUI or HarmonyOS.
3
Which devices are affected by CVE-2022-41581?
CVE-2022-41581 affects Huawei devices running EMUI versions 11.0.1, 12.0.0, and HarmonyOS version 2.0.
4
What can happen if CVE-2022-41581 is exploited?
Exploitation of CVE-2022-41581 may result in unauthorized access and manipulation of sensitive data due to unverified data handling.
5
Is there a patch for CVE-2022-41581?
Yes, Huawei has released security updates that address CVE-2022-41581 for the affected software versions.