CVE-2024-57960: Input Validation
Published Feb 6, 2025
·Updated
Input verification vulnerability in the ExternalStorageProvider module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Affected Software
7 affected components
Huawei Emui=13.0.0
Huawei Emui=14.0.0
Huawei Harmonyos=3.0.0
Huawei Harmonyos=3.1.0
Huawei Harmonyos=4.0.0
Huawei Harmonyos=4.2.0
Huawei Harmonyos=4.3.0
Event History
Feb 6, 2025
CVE Published
via MITRE·12:32 PM
Data Sourced
via MITRE·12:32 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·01:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-57960?
CVE-2024-57960 is classified as a high severity vulnerability affecting the confidentiality of services.
2
How do I fix CVE-2024-57960?
To resolve CVE-2024-57960, ensure that your Huawei EMUI or HarmonyOS devices are updated to the latest software version provided by Huawei.
3
Which versions are affected by CVE-2024-57960?
CVE-2024-57960 affects Huawei EMUI versions 13.0.0 and 14.0.0, and HarmonyOS versions 3.0.0, 3.1.0, 4.0.0, 4.2.0, and 4.3.0.
4
What type of vulnerability is CVE-2024-57960?
CVE-2024-57960 is an input verification vulnerability found in the ExternalStorageProvider module.
5
What are the potential impacts of CVE-2024-57960?
The exploitation of CVE-2024-57960 may lead to unauthorized access and compromise the confidentiality of user services.