The voice wakeup module has a vulnerability of using externally-controlled format strings. Successful exploitation of this vulnerability may affect system availability.
The product uses a function that accepts a format string as an argument, but the format string originates from an external source.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Emui | Huawei | 10.1.0 (including) | 10.1.0 (including) |
Emui | Huawei | 10.1.1 (including) | 10.1.1 (including) |
Emui | Huawei | 11.0.0 (including) | 11.0.0 (including) |
Emui | Huawei | 11.0.1 (including) | 11.0.1 (including) |
Emui | Huawei | 12.0.0 (including) | 12.0.0 (including) |
Harmonyos | Huawei | 2.0 (including) | 2.0 (including) |
Magic_ui | Huawei | 3.1.0 (including) | 3.1.0 (including) |
Magic_ui | Huawei | 3.1.1 (including) | 3.1.1 (including) |
Magic_ui | Huawei | 4.0.0 (including) | 4.0.0 (including) |