The HW_KEYMASTER module lacks the validity check of the key format. Successful exploitation of this vulnerability may result in out-of-bounds memory access.
References
Link | Resource |
---|---|
https://consumer.huawei.com/en/support/bulletin/2022/10/ | Vendor Advisory |
https://device.harmonyos.com/en/docs/security/update/security-bulletins-phones-202209-0000001392278845 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2022-09-16 18:15
Updated : 2023-08-08 14:21
NVD link : CVE-2021-40017
Mitre link : CVE-2021-40017
CVE.ORG link : CVE-2021-40017
JSON object : View
Products Affected
huawei
- harmonyos
- emui
CWE
CWE-20
Improper Input Validation