VYPR
Medium severity5.5NVD Advisory· Published Jul 6, 2023· Updated Jun 17, 2026

CVE-2022-48518

CVE-2022-48518

Description

Vulnerability of signature verification in the iaware system being initialized later than the time when the system broadcasts are sent. Successful exploitation of this vulnerability may cause malicious apps to start upon power-on by spoofing the package names of apps in the startup trustlist, which affects system performance.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

7
  • Huawei/Emui3 versions
    cpe:2.3:o:huawei:emui:12.0.0:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:o:huawei:emui:12.0.0:*:*:*:*:*:*:*
    • cpe:2.3:o:huawei:emui:12.0.1:*:*:*:*:*:*:*
    • (no CPE)range: 12.0.0
  • Huawei/Harmonyos3 versions
    cpe:2.3:o:huawei:harmonyos:2.0.0:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:o:huawei:harmonyos:2.0.0:*:*:*:*:*:*:*
    • cpe:2.3:o:huawei:harmonyos:2.0.1:*:*:*:*:*:*:*
    • (no CPE)range: 2.0.0

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.