QID 610487

Date Published: 2023-05-26

QID 610487: Google Android May 2023 Security Patch Missing for Huawei EMUI

Android is a mobile operating system based on a modified version of the Linux kernel and other open source software, designed primarily for touchscreen mobile devices such as smartphones and tablets.

Following security issues were discovered:
CVE-2022-40503, CVE-2022-36449, CVE-2022-38181, CVE-2022-41757, CVE-2022-42716, CVE-2021-0872, CVE-2021-0873, CVE-2021-0874, CVE-2021-0875, CVE-2021-0876, CVE-2021-0878, CVE-2021-0879, CVE-2021-0880, CVE-2021-0881, CVE-2021-0882, CVE-2021-0883, CVE-2021-0884, CVE-2021-0885, CVE-2023-20941,CVE-2023-0266

Affected Devices :
HUAWEI Mate series: HUAWEI Mate 40 Pro, HUAWEI Mate 50, HUAWEI Mate 50 Pro, HUAWEI Mate Xs 2, HUAWEI Mate Xs HUAWEI P series: HUAWEI P40, HUAWEI P40 Pro, HUAWEI P40 Pro+, HUAWEI P50, HUAWEI P50 Pro, HUAWEI P50 Pocket, HUAWEI P50 Pocket Premium Edition, HUAWEI P40 lite 5G HUAWEI nova series: HUAWEI nova 10, HUAWEI nova 10 Pro, HUAWEI nova 10 SE, HUAWEI nova 9 SE, HUAWEI nova 9, HUAWEI nova 8i, HUAWEI nova 8, HUAWEI nova 7 5G, HUAWEI nova 7 SE 5G, HUAWEI nova 7i HONOR series: HONOR 30 Pro+, HONOR View30 Pro, HONOR 30, Honor 30S

On successful exploitation, it could allow an attacker to execute code.

  • CVSS V3 rated as Critical - 8.8 severity.
  • CVSS V2 rated as High - 7.5 severity.
  • Solution
    Refer to HUAWEI Security advisory May 2023 to address this issue and obtain more information.
    Software Advisories
    Advisory ID Software Component Link
    May 2023 Android URL Logo consumer.huawei.com/en/support/bulletin/2023/5