CVE Vulnerabilities

CVE-2021-40055

Published: Mar 10, 2022 | Modified: Nov 21, 2024
CVSS 3.x
5.9
MEDIUM
Source:
NVD
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N
CVSS 2.x
7.1 HIGH
AV:N/AC:M/Au:N/C:N/I:C/A:N
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

There is a man-in-the-middle attack vulnerability during system update download in recovery mode. Successful exploitation of this vulnerability may affect integrity.

Affected Software

NameVendorStart VersionEnd Version
EmuiHuawei10.0.0 (including)10.0.0 (including)
EmuiHuawei10.1.0 (including)10.1.0 (including)
EmuiHuawei10.1.1 (including)10.1.1 (including)
EmuiHuawei11.0.0 (including)11.0.0 (including)
EmuiHuawei11.0.1 (including)11.0.1 (including)
EmuiHuawei12.0.0 (including)12.0.0 (including)
HarmonyosHuawei2.0 (including)2.0 (including)
Magic_uiHuawei3.0.0 (including)3.0.0 (including)
Magic_uiHuawei3.1.0 (including)3.1.0 (including)
Magic_uiHuawei3.1.1 (including)3.1.1 (including)
Magic_uiHuawei4.0.0 (including)4.0.0 (including)

References