The Settings module has the file privilege escalation vulnerability.Successful exploitation of this vulnerability may affect confidentiality.
The product does not properly assign, modify, track, or check privileges for an actor, creating an unintended sphere of control for that actor.
During installation, installed file permissions are set to allow anyone to modify those files.
Link | Tags |
---|---|
https://consumer.huawei.com/en/support/bulletin/2023/4/ | vendor advisory |
https://device.harmonyos.com/en/docs/security/update/security-bulletins-202304-0000001506528486 | vendor advisory |