CVE-2024-57956
Published: 06 February 2025
Description
Out-of-bounds read vulnerability in the interpreter string module Impact: Successful exploitation of this vulnerability may affect availability.
Security Summary
CVE-2024-57956 is an out-of-bounds read vulnerability (CWE-680, CWE-125) in the interpreter string module. Published on 2025-02-06, it carries a CVSS v3.1 base score of 2.8 (AV:L/AC:L/PR:L/UI:R/S:U/C:N/I:N/A:L) and has been disclosed in a Huawei consumer security bulletin.
Exploitation requires local access, low attack complexity, low privileges, and user interaction from the target user. A successful attack can affect system availability with low impact, such as causing a partial denial of service.
Huawei's security bulletin at https://consumer.huawei.com/en/support/bulletin/2025/2/ provides details on the vulnerability and recommended mitigations or patches.
Details
- CWE(s)