Race condition vulnerability due to multi-thread access to mutually exclusive resources in Huawei Share. Successful exploitation of this vulnerability may cause the program to exit abnormally.
The product dereferences a pointer that it expects to be valid but is NULL.
The product contains a concurrent code sequence that requires temporary, exclusive access to a shared resource, but a timing window exists in which the shared resource can be modified by another code sequence operating concurrently.
Link | Tags |
---|---|
https://consumer.huawei.com/en/support/bulletin/2023/7/ | vendor advisory |
https://device.harmonyos.com/en/docs/security/update/security-bulletins-202307-0000001587168858 | vendor advisory |