CVE-2022-41602: Null Pointer Dereference
Published Oct 14, 2022
·Updated
The phones have the heap overflow, out-of-bounds read, and null pointer vulnerabilities in the fingerprint trusted application (TA).Successful exploitation of this vulnerability may affect the fingerprint service.
Affected Software
3 affected components
Huawei Emui=11.0.1
Huawei Emui=12.0.0
Huawei Harmonyos=2.0
Event History
Oct 14, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionWeakness
Data Sourced
via NVD·04:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2022-41602?
CVE-2022-41602 has a high severity rating due to its potential to compromise the fingerprint service.
2
How do I fix CVE-2022-41602?
To fix CVE-2022-41602, update your Huawei device to the latest available software version.
3
Which devices are affected by CVE-2022-41602?
CVE-2022-41602 affects Huawei devices running EMUI 11.0.1, EMUI 12.0.0, and HarmonyOS 2.0.
4
What types of vulnerabilities are included in CVE-2022-41602?
CVE-2022-41602 includes heap overflow, out-of-bounds read, and null pointer vulnerabilities.
5
What could happen if CVE-2022-41602 is exploited?
Exploitation of CVE-2022-41602 may lead to unauthorized access to the fingerprint service, compromising user security.