Total
872 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2023-26548 | 1 Huawei | 2 Emui, Harmonyos | 2023-04-03 | N/A | 7.5 HIGH |
The pgmng module has a vulnerability in serialization/deserialization. Successful exploitation of this vulnerability may affect availability. | |||||
CVE-2023-26547 | 1 Huawei | 2 Emui, Harmonyos | 2023-04-03 | N/A | 7.8 HIGH |
The InputMethod module has a vulnerability of serialization/deserialization mismatch. Successful exploitation of this vulnerability may cause privilege escalation. | |||||
CVE-2022-48361 | 1 Huawei | 2 Emui, Harmonyos | 2023-04-03 | N/A | 5.3 MEDIUM |
The Always On Display (AOD) has a path traversal vulnerability in theme files. Successful exploitation of this vulnerability may cause a failure in reading AOD theme resources. | |||||
CVE-2022-48360 | 1 Huawei | 2 Emui, Harmonyos | 2023-04-03 | N/A | 7.5 HIGH |
The facial recognition module has a vulnerability in file permission control. Successful exploitation of this vulnerability may affect confidentiality. | |||||
CVE-2022-48354 | 1 Huawei | 2 Emui, Harmonyos | 2023-04-03 | N/A | 6.5 MEDIUM |
The Bluetooth module has a heap out-of-bounds write vulnerability. Successful exploitation of this vulnerability can cause the Bluetooth process to crash. | |||||
CVE-2022-48358 | 1 Huawei | 2 Emui, Harmonyos | 2023-04-03 | N/A | 7.4 HIGH |
The BatteryHealthActivity has a redirection vulnerability. Successful exploitation of this vulnerability by a malicious app can cause service exceptions. | |||||
CVE-2022-48355 | 1 Huawei | 2 Emui, Harmonyos | 2023-04-03 | N/A | 6.5 MEDIUM |
The Bluetooth module has a heap out-of-bounds read vulnerability. Successful exploitation of this vulnerability can cause the Bluetooth process to crash. | |||||
CVE-2022-29793 | 1 Huawei | 3 Emui, Harmonyos, Magic Ui | 2023-02-10 | 5.0 MEDIUM | 7.5 HIGH |
There is a configuration defect in the activation lock of mobile phones.Successful exploitation of this vulnerability may affect application availability. | |||||
CVE-2021-40052 | 1 Huawei | 3 Emui, Harmonyos, Magic Ui | 2023-01-19 | 7.8 HIGH | 7.5 HIGH |
There is an incorrect buffer size calculation vulnerability in the video framework.Successful exploitation of this vulnerability may affect availability. | |||||
CVE-2021-46741 | 1 Huawei | 3 Emui, Harmonyos, Magic Ui | 2022-12-12 | 5.0 MEDIUM | 7.5 HIGH |
The basic framework and setting module have defects, which were introduced during the design. Successful exploitation of this vulnerability may affect system integrity. | |||||
CVE-2022-34742 | 1 Huawei | 3 Emui, Harmonyos, Magic Ui | 2022-12-12 | 5.0 MEDIUM | 7.5 HIGH |
The system module has a read/write vulnerability. Successful exploitation of this vulnerability may affect data confidentiality. | |||||
CVE-2022-39002 | 1 Huawei | 3 Emui, Harmonyos, Magic Ui | 2022-11-03 | N/A | 9.8 CRITICAL |
Double free vulnerability in the storage module. Successful exploitation of this vulnerability will cause the memory to be freed twice. | |||||
CVE-2021-40040 | 1 Huawei | 3 Emui, Harmonyos, Magic Ui | 2022-10-27 | N/A | 7.5 HIGH |
Vulnerability of writing data to an arbitrary address in the HW_KEYMASTER module. Successful exploitation of this vulnerability may affect confidentiality. | |||||
CVE-2021-40053 | 1 Huawei | 3 Emui, Harmonyos, Magic Ui | 2022-10-27 | 6.4 MEDIUM | 9.1 CRITICAL |
There is a permission control vulnerability in the Nearby module.Successful exploitation of this vulnerability will affect availability and integrity. | |||||
CVE-2022-37006 | 1 Huawei | 2 Emui, Harmonyos | 2022-10-27 | N/A | 7.5 HIGH |
Permission control vulnerability in the network module. Successful exploitation of this vulnerability may affect service availability. | |||||
CVE-2022-41602 | 1 Huawei | 2 Emui, Harmonyos | 2022-10-15 | N/A | 3.4 LOW |
The phones have the heap overflow, out-of-bounds read, and null pointer vulnerabilities in the fingerprint trusted application (TA).Successful exploitation of this vulnerability may affect the fingerprint service. | |||||
CVE-2022-31751 | 1 Huawei | 3 Emui, Harmonyos, Magic Ui | 2022-10-05 | 4.9 MEDIUM | 5.5 MEDIUM |
The kernel emcom module has multi-thread contention. Successful exploitation of this vulnerability may affect system availability. | |||||
CVE-2022-31762 | 1 Huawei | 3 Emui, Harmonyos, Magic Ui | 2022-10-05 | 4.6 MEDIUM | 7.8 HIGH |
The AMS module has a vulnerability in input validation. Successful exploitation of this vulnerability may cause privilege escalation. | |||||
CVE-2022-31755 | 1 Huawei | 3 Emui, Harmonyos, Magic Ui | 2022-10-05 | 2.1 LOW | 5.5 MEDIUM |
The communication module has a vulnerability of improper permission preservation. Successful exploitation of this vulnerability may affect system availability. | |||||
CVE-2021-40010 | 1 Huawei | 3 Emui, Harmonyos, Magic Ui | 2022-09-30 | 7.5 HIGH | 9.8 CRITICAL |
The bone voice ID TA has a heap overflow vulnerability.Successful exploitation of this vulnerability may result in malicious code execution. |