CVE-2023-41312

CVSS 3.1 Score 5.3 of 10 (medium)

Details

Published Sep 27, 2023
Updated: Sep 28, 2023
CWE ID 269

Summary

CVE-2023-41312 is a new permission control vulnerability that has been identified in the audio module. This issue allows unauthorized users to gain control over several applications, potentially activating them without proper authorization. The vulnerability could be exploited to cause unwanted app behavior, leading to privacy concerns and potential security risks. The exact cause of the vulnerability is still under investigation, but it is recommended that users update their affected software as soon as possible to mitigate the risk. The impact of this vulnerability may vary depending on the specific configuration and usage of the affected applications.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • HarmonyOS
  • Huawei EMUI

Affected Vendors

  • Huawei Technologies