The DDMP/ODMF module has a service hijacking vulnerability. Successful exploit of this vulnerability may cause services to be unavailable.
A capture-replay flaw exists when the design of the product makes it possible for a malicious user to sniff network traffic and bypass authentication by replaying it to the server in question to the same effect as the original message (or with minor changes).
Link | Tags |
---|---|
https://consumer.huawei.com/en/support/bulletin/2022/11/ | vendor advisory |
https://device.harmonyos.com/en/docs/security/update/security-bulletins-phones-202211-0000001441016433 | vendor advisory |