CVE-2024-58111

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Apr 7, 2025
CWE ID 248

Summary

CVE-2024-58111 is a newly disclosed vulnerability affecting the SVG parsing module in the ArkUI framework. This issue involves an exception capture failure that, if exploited successfully, could lead to a disruption in system availability. The precise implications of this issue on ArkUI's functionality have yet to be fully understood, but it is known to pose a potential risk to the affected system's availability. The exact cause and exploit methods of this vulnerability remain undisclosed, but system administrators are encouraged to apply patches or updates as soon as they become available to mitigate the risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • HarmonyOS

Affected Vendors

  • Huawei Technologies