CVE-2023-52106

Vulnerability of permission verification for APIs in the DownloadProviderMain module. Impact: Successful exploitation of this vulnerability will affect integrity and availability.
Configurations

Configuration 1 (hide)

cpe:2.3:o:huawei:harmonyos:4.0.0:*:*:*:*:*:*:*

History

04 Sep 2024, 02:15

Type Values Removed Values Added
References
  • () https://consumer.huawei.com/en/support/bulletin/2024/9/ -
Summary (en) The DownloadProviderMain module has a vulnerability in API permission verification. Successful exploitation of this vulnerability may affect integrity and availability. (en) Vulnerability of permission verification for APIs in the DownloadProviderMain module. Impact: Successful exploitation of this vulnerability will affect integrity and availability.
CWE CWE-264

19 Jan 2024, 19:33

Type Values Removed Values Added
CPE cpe:2.3:o:huawei:harmonyos:4.0.0:*:*:*:*:*:*:*
CWE NVD-CWE-noinfo
First Time Huawei
Huawei harmonyos
References () https://consumer.huawei.com/en/support/bulletin/2024/1/ - () https://consumer.huawei.com/en/support/bulletin/2024/1/ - Not Applicable
References () https://device.harmonyos.com/en/docs/security/update/security-bulletins-202401-0000001799925977 - () https://device.harmonyos.com/en/docs/security/update/security-bulletins-202401-0000001799925977 - Vendor Advisory
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.1

16 Jan 2024, 10:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-01-16 10:15

Updated : 2024-09-04 02:15


NVD link : CVE-2023-52106

Mitre link : CVE-2023-52106

CVE.ORG link : CVE-2023-52106


JSON object : View

Products Affected

huawei

  • harmonyos
CWE
NVD-CWE-noinfo CWE-264

Permissions, Privileges, and Access Controls