First published: Thu Feb 09 2023(Updated: )
The IHwAttestationService interface has a defect in authentication. Successful exploitation of this vulnerability may affect data confidentiality.
Credit: psirt@huawei.com
Affected Software | Affected Version | How to fix |
---|---|---|
Huawei EMUI | =11.0.1 | |
Huawei EMUI | =12.0.0 | |
Huawei EMUI | =12.0.1 | |
Huawei HarmonyOS | =2.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-48294 is considered a high severity vulnerability due to its potential impact on data confidentiality.
To fix CVE-2022-48294, ensure that you update the affected Huawei EMUI or HarmonyOS devices to the latest software version.
CVE-2022-48294 affects Huawei EMUI versions 11.0.1, 12.0.0, and 12.0.1, as well as HarmonyOS version 2.0.
CVE-2022-48294 is an authentication vulnerability in the IHwAttestationService interface.
Yes, successful exploitation of CVE-2022-48294 may lead to unauthorized access and affect data confidentiality.