First published: Wed Nov 09 2022(Updated: )
There is a race condition vulnerability in SD upgrade mode. Successful exploitation of this vulnerability may affect data confidentiality.
Credit: psirt@huawei.com psirt@huawei.com
Affected Software | Affected Version | How to fix |
---|---|---|
Huawei HarmonyOS | =2.0 | |
Huawei HarmonyOS | =2.1 | |
Huawei EMUI | =11.0.1 | |
Huawei EMUI | =12.0.0 | |
Huawei EMUI | =12.0.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-44563 has been classified as a high severity vulnerability due to its potential impact on data confidentiality.
To fix CVE-2022-44563, upgrade your device to the latest version of Huawei HarmonyOS or EMUI as recommended in the security bulletin.
CVE-2022-44563 affects devices running Huawei HarmonyOS versions 2.0 and 2.1, as well as EMUI versions 11.0.1, 12.0.0, and 12.0.1.
A race condition vulnerability, such as CVE-2022-44563, occurs when two or more processes access shared data and try to change it simultaneously, potentially leading to data integrity issues.
Successful exploitation of CVE-2022-44563 may lead to unauthorized access to sensitive information, compromising data confidentiality.