Vulnerability of insecure signatures in the OsuLogin module. Successful exploitation of this vulnerability may cause OsuLogin to be maliciously modified and overwritten.
Weaknesses in this category are typically introduced during the configuration of the software.
The product does not verify, or incorrectly verifies, the cryptographic signature for data.
Link | Tags |
---|---|
https://consumer.huawei.com/en/support/bulletin/2023/8/ | vendor advisory |
https://device.harmonyos.com/en/docs/security/update/security-bulletins-202308-0000001667644725 | vendor advisory |