Home

Description

Cross-process screen stack vulnerability in the UIExtension module Impact: Successful exploitation of this vulnerability may affect service confidentiality.

PUBLISHED Reserved 2024-12-26 | Published 2025-01-08 | Updated 2025-09-18 | Assigner huawei




MEDIUM: 5.5CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N

Problem types

CWE-1021 Improper Restriction of Rendered UI Layers or Frames

Product status

Default status
unaffected

5.0.0
affected

References

consumer.huawei.com/en/support/bulletin/2025/1/

cve.org (CVE-2024-56436)

nvd.nist.gov (CVE-2024-56436)

Download JSON