CVE-2022-41603: Null Pointer Dereference
Published Oct 14, 2022
·Updated
The phones have the heap overflow, out-of-bounds read, and null pointer vulnerabilities in the fingerprint trusted application (TA).Successful exploitation of this vulnerability may affect the fingerprint service.
Affected Software
3 affected components
Huawei Emui=11.0.1
Huawei Emui=12.0.0
Huawei Harmonyos=2.0
Event History
Oct 14, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionWeakness
Data Sourced
via NVD·04:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2022-41603?
CVE-2022-41603 is considered a critical vulnerability due to its potential to compromise the fingerprint service.
2
How do I fix CVE-2022-41603?
To fix CVE-2022-41603, update your device to the latest firmware provided by Huawei that addresses this vulnerability.
3
Which devices are affected by CVE-2022-41603?
CVE-2022-41603 affects Huawei devices running EMUI 11.0.1, EMUI 12.0.0, and HarmonyOS 2.0.
4
What type of vulnerabilities are present in CVE-2022-41603?
CVE-2022-41603 includes heap overflow, out-of-bounds read, and null pointer vulnerabilities.
5
What is the potential impact of exploiting CVE-2022-41603?
Exploitation of CVE-2022-41603 may allow attackers to interfere with the fingerprint service, compromising its integrity.