PT-2023-5689 · Huawei · Harmonyos

Published

2023-08-28

·

Updated

2023-09-28

·

CVE-2023-41305

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:C/I:N/A:N
Name of the Vulnerable Software and Affected Versions HarmonyOS (affected versions not specified)
Description The issue is related to the use of a weak encryption mechanism when sending 5G messages in the SMS message module. This may allow a remote attacker to impact the confidentiality of protected information. The vulnerability is associated with the EMUI shell message module of the HarmonyOS operating system.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Inadequate Encryption Strength

Weakness Enumeration

Related Identifiers

BDU:2023-06358
CVE-2023-41305

Affected Products

Harmonyos