First published: Wed Jan 08 2025(Updated: )
Vulnerability of input parameters not being verified during glTF model loading in the 3D engine module Impact: Successful exploitation of this vulnerability may affect availability.
Credit: psirt@huawei.com
Affected Software | Affected Version | How to fix |
---|---|---|
Huawei HarmonyOS | =5.0.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2024-56455 is high due to the potential impact on availability during glTF model loading.
To fix CVE-2024-56455, ensure that all input parameters are verified before processing glTF models in the 3D engine module.
CVE-2024-56455 affects users of Huawei HarmonyOS version 5.0.0.
Successful exploitation of CVE-2024-56455 may lead to denial of service by affecting the availability of the application.
Yes, Huawei has provided a security bulletin addressing the vulnerability, and users should apply the recommended updates.