Vulnerability of package name verification being bypassed in the HwIms module. Impact: Successful exploitation of this vulnerability will affect availability.
The product does not verify, or incorrectly verifies, the cryptographic signature for data.
The product performs an authorization check when an actor attempts to access a resource or perform an action, but it does not correctly perform the check.
Link | Tags |
---|---|
https://consumer.huawei.com/en/support/bulletin/2024/3/ | vendor advisory |
https://device.harmonyos.com/en/docs/security/update/security-bulletins-202403-0000001667644725 | broken link vendor advisory |