CVE-2022-44553: Input Validation
The HiView module has a vulnerability of not filtering third-party apps out when the HiView module traverses to invoke the system provider. Successful exploitation of this vulnerability may cause third-party apps to start periodically.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2022-44553?
CVE-2022-44553 is classified as a security vulnerability that can lead to undesirable behavior of third-party applications.
How do I fix CVE-2022-44553?
To fix CVE-2022-44553, users should update their Huawei devices to the latest firmware that addresses this vulnerability.
Which devices are affected by CVE-2022-44553?
CVE-2022-44553 affects several Huawei devices running HarmonyOS 2.0, 2.1, and 3.0.0, as well as EMUI versions 11.0.1, 12.0.0, and 12.0.1.
What is the impact of exploiting CVE-2022-44553?
Successful exploitation of CVE-2022-44553 may lead to the unintended activation of third-party applications on the device.
Can CVE-2022-44553 be exploited remotely?
CVE-2022-44553 does not specify remote exploitation; it primarily concerns local app behaviors upon interaction with the HiView module.