First published: Wed Jan 08 2025(Updated: )
Vulnerability of input parameters not being verified during glTF model loading in the 3D engine module Impact: Successful exploitation of this vulnerability may affect availability.
Credit: psirt@huawei.com
Affected Software | Affected Version | How to fix |
---|---|---|
Huawei HarmonyOS | =5.0.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2024-56454 is classified as a medium vulnerability due to potential impacts on availability.
To fix CVE-2024-56454, ensure you are running the latest version of HarmonyOS that includes security updates for this vulnerability.
CVE-2024-56454 affects devices running Huawei HarmonyOS version 5.0.0.
If exploited, CVE-2024-56454 may affect the availability of the system due to unverified input parameters during glTF model loading.
Currently, there are no official workarounds for CVE-2024-56454 other than updating to a secure version of the software.