First published: Wed Jan 08 2025(Updated: )
Vulnerability of improper authentication in the ANS system service module Impact: Successful exploitation of this vulnerability may cause features to perform abnormally.
Credit: psirt@huawei.com
Affected Software | Affected Version | How to fix |
---|---|---|
Huawei EMUI | =12.0.0 | |
Huawei EMUI | =13.0.0 | |
Huawei HarmonyOS | =2.0.0 | |
Huawei HarmonyOS | =2.1.0 | |
Huawei HarmonyOS | =3.0.0 | |
Huawei HarmonyOS | =3.1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-52955 is classified as a critical vulnerability due to its potential to allow improper authentication.
To mitigate CVE-2023-52955, users should update affected Huawei Emui and HarmonyOS versions to the latest available patches.
CVE-2023-52955 affects Huawei Emui versions 12.0.0 and 13.0.0, and HarmonyOS versions 2.0.0, 2.1.0, 3.0.0, and 3.1.0.
Exploitation of CVE-2023-52955 may cause abnormal behavior in features of the affected Huawei systems.
CVE-2023-52955 allows attackers to improperly authenticate, which could potentially be exploited remotely.