CVE-2023-52377

Vulnerability of input data not being verified in the cellular data module.Successful exploitation of this vulnerability may cause out-of-bounds access.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:huawei:emui:12.0.0:*:*:*:*:*:*:*
cpe:2.3:o:huawei:emui:13.0.0:*:*:*:*:*:*:*
cpe:2.3:o:huawei:harmonyos:2.0.0:*:*:*:*:*:*:*
cpe:2.3:o:huawei:harmonyos:2.1.0:*:*:*:*:*:*:*
cpe:2.3:o:huawei:harmonyos:3.0.0:*:*:*:*:*:*:*
cpe:2.3:o:huawei:harmonyos:3.1.0:*:*:*:*:*:*:*
cpe:2.3:o:huawei:harmonyos:4.0.0:*:*:*:*:*:*:*

History

13 Mar 2025, 14:50

Type Values Removed Values Added
References () https://consumer.huawei.com/en/support/bulletin/2024/2/ - () https://consumer.huawei.com/en/support/bulletin/2024/2/ - Vendor Advisory
References () https://device.harmonyos.com/cn/docs/security/update/security-bulletins-202402-0000001834855405 - () https://device.harmonyos.com/cn/docs/security/update/security-bulletins-202402-0000001834855405 - Vendor Advisory
First Time Huawei
Huawei harmonyos
Huawei emui
CWE CWE-125
CPE cpe:2.3:o:huawei:harmonyos:3.0.0:*:*:*:*:*:*:*
cpe:2.3:o:huawei:harmonyos:2.0.0:*:*:*:*:*:*:*
cpe:2.3:o:huawei:harmonyos:2.1.0:*:*:*:*:*:*:*
cpe:2.3:o:huawei:emui:13.0.0:*:*:*:*:*:*:*
cpe:2.3:o:huawei:harmonyos:4.0.0:*:*:*:*:*:*:*
cpe:2.3:o:huawei:emui:12.0.0:*:*:*:*:*:*:*
cpe:2.3:o:huawei:harmonyos:3.1.0:*:*:*:*:*:*:*

21 Nov 2024, 20:15

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.4
References () https://consumer.huawei.com/en/support/bulletin/2024/2/ - () https://consumer.huawei.com/en/support/bulletin/2024/2/ -
References () https://device.harmonyos.com/cn/docs/security/update/security-bulletins-202402-0000001834855405 - () https://device.harmonyos.com/cn/docs/security/update/security-bulletins-202402-0000001834855405 -

20 Feb 2024, 19:50

Type Values Removed Values Added
Summary
  • (es) Vulnerabilidad de que los datos de entrada no se verifiquen en el módulo de datos móviles. La explotación exitosa de esta vulnerabilidad puede provocar un acceso fuera de los límites.

18 Feb 2024, 06:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-02-18 06:15

Updated : 2025-03-13 14:50


NVD link : CVE-2023-52377

Mitre link : CVE-2023-52377

CVE.ORG link : CVE-2023-52377


JSON object : View

Products Affected

huawei

  • emui
  • harmonyos
CWE
CWE-120

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

CWE-125

Out-of-bounds Read