The HW_KEYMASTER module lacks the validity check of the key format. Successful exploitation of this vulnerability may result in out-of-bounds memory access.
References
Link | Resource |
---|---|
https://consumer.huawei.com/en/support/bulletin/2022/10/ | Vendor Advisory |
https://device.harmonyos.com/en/docs/security/update/security-bulletins-phones-202209-0000001392278845 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
08 Aug 2023, 14:21
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-20 |
Information
Published : 2022-09-16 18:15
Updated : 2024-02-28 19:29
NVD link : CVE-2021-40017
Mitre link : CVE-2021-40017
CVE.ORG link : CVE-2021-40017
JSON object : View
Products Affected
huawei
- emui
- harmonyos
CWE
CWE-20
Improper Input Validation