CVE-2022-48330
CVSS 3.1 Score 8 of 10 (high)
Details
Published Jun 16, 2023
Updated: Dec 17, 2024
CWE ID 787
Summary
CVE-2022-48330 is a newly disclosed vulnerability affecting certain Huawei sound box models, specifically those running on FLMG-10 versions 10.0.1.0(H100SP22C00). This issue involves an out-of-bounds write vulnerability, which can be exploited by attackers to trigger a buffer overflow. By doing so, they could potentially execute arbitrary code or cause the device to crash, potentially leading to unintended consequences or data breaches. Users of the affected Huawei sound box versions are advised to apply the latest software updates to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Vendors
- Huawei Technologies