VendorsHuaweiharmonyosall versions
Vulnerabilities

Huawei Harmonyos

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

1050CVEs
CVE-2025-68969
Multi-thread race condition vulnerability in the thermal management module. Impact: Successful exploitation of this vulnerability may affect availability.
Published 2026-01-14 · Analyzed
6.8EPSS 0.001
CVE-2026-34863
Out-of-bounds write vulnerability in the file system. Impact: Successful exploitation of this vulnerability may affect availability.
Published 2026-04-13 · Analyzed
6.7EPSS 0.001
CVE-2025-54633
Out-of-bounds read vulnerability in the register configuration of the DMA module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-08-06 · Analyzed
6.7EPSS 0.001
CVE-2025-54641
Issue of buffer overflow caused by insufficient data verification in the kernel acceleration module. Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-08-06 · Analyzed
6.7EPSS 0.001
CVE-2025-54642
Issue of buffer overflow caused by insufficient data verification in the kernel gyroscope module. Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-08-06 · Analyzed
6.7EPSS 0.001
CVE-2025-48908
Ability Auto Startup service vulnerability in the foundation process Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-06-06 · Analyzed
6.7EPSS 0.001
CVE-2025-54631
Vulnerability of insufficient data length verification in the partition module. Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-08-06 · Analyzed
6.7EPSS 0.001
CVE-2024-58048
Multi-thread problem vulnerability in the package management module Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-03-04 · Analyzed
6.7EPSS 0.001
CVE-2025-54629
Race condition issue occurring in the physical page import process of the memory management module. Impact: Successful exploitation of this vulnerability may affect service integrity.
Published 2025-08-06 · Analyzed
6.7EPSS 0.001
CVE-2025-54625
Race condition vulnerability in the kernel file system module. Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-08-06 · Analyzed
6.7EPSS 0.001
CVE-2025-66326
Race condition vulnerability in the audio module. Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-12-08 · Analyzed
6.7EPSS 0.001
CVE-2024-42034
LaunchAnywhere vulnerability in the account module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2024-08-08 · Analyzed
6.6EPSS 0.001
CVE-2024-51530
LaunchAnywhere vulnerability in the account module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2024-11-05 · Analyzed
6.6EPSS 0.001
CVE-2025-54643
Out-of-bounds array access issue due to insufficient data verification in the kernel ambient light module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-08-06 · Analyzed
6.6EPSS 0.001
CVE-2025-53185
Virtual address reuse issue in the memory management module, which can be exploited by non-privileged users to access released memory Impact: Successful exploitation of this vulnerability may affect service integrity.
Published 2025-07-07 · Analyzed
6.6EPSS 0.001
CVE-2025-48902
Vulnerability of uncontrolled system resource applications in the setting module Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-06-06 · Analyzed
6.6EPSS 0.001
CVE-2025-54644
Out-of-bounds array access issue due to insufficient data verification in the kernel ambient light module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-08-06 · Analyzed
6.6EPSS 0.001
CVE-2026-28549
Race condition vulnerability in the permission management service. Impact: Successful exploitation of this vulnerability may affect availability.
Published 2026-03-05 · Analyzed
6.6EPSS 0.001
CVE-2021-37023
There is a Improper Access Control vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability will cause media files which can be reads and writes in non-distributed directories on any device on the network..
Published 2021-11-23 · Modified
6.5EPSS 0.006
CVE-2023-52542
Permission verification vulnerability in the system module. Impact: Successful exploitation of this vulnerability will affect availability.
Published 2024-04-08 · Analyzed
6.5EPSS 0.003
CVE-2022-34740
The NFC module has a buffer overflow vulnerability. Successful exploitation of this vulnerability may cause exceptions in NFC card registration, deletion, and activation.
Published 2022-07-11 · Modified
6.5EPSS 0.003
CVE-2022-34741
The NFC module has a buffer overflow vulnerability. Successful exploitation of this vulnerability may cause exceptions in NFC card registration, deletion, and activation.
Published 2022-07-11 · Modified
6.5EPSS 0.003
CVE-2021-37039
There is an Input verification vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may cause Bluetooth DoS.
Published 2021-12-08 · Modified
6.5EPSS 0.003
CVE-2022-48354
The Bluetooth module has a heap out-of-bounds write vulnerability. Successful exploitation of this vulnerability can cause the Bluetooth process to crash.
Published 2023-03-27 · Modified
6.5EPSS 0.002
CVE-2022-48355
The Bluetooth module has a heap out-of-bounds read vulnerability. Successful exploitation of this vulnerability can cause the Bluetooth process to crash.
Published 2023-03-27 · Modified
6.5EPSS 0.002
CVE-2022-48291
The Bluetooth module has an authentication bypass vulnerability in the pairing process. Successful exploitation of this vulnerability may affect confidentiality.
Published 2023-03-27 · Modified
6.5EPSS 0.002
CVE-2022-48292
The Bluetooth module has an out-of-memory (OOM) vulnerability. Successful exploitation of this vulnerability may affect data confidentiality.
Published 2023-02-09 · Modified
6.5EPSS 0.002
CVE-2022-48293
The Bluetooth module has an OOM vulnerability. Successful exploitation of this vulnerability may affect data confidentiality.
Published 2023-02-09 · Modified
6.5EPSS 0.002
CVE-2025-46590
Bypass vulnerability in the network search instruction authentication module Impact: Successful exploitation of this vulnerability can bypass authentication and enable access to some network search functions.
Published 2025-05-06 · Analyzed
6.5EPSS 0.002
CVE-2026-34852
Stack overflow vulnerability in the media platform. Impact: Successful exploitation of this vulnerability may affect availability.
Published 2026-04-13 · Analyzed
6.5EPSS 0.002
CVE-2022-47974
The Bluetooth AVRCP module has a vulnerability that can lead to DoS attacks.Successful exploitation of this vulnerability may cause the Bluetooth process to restart.
Published 2023-01-06 · Modified
6.5EPSS 0.002
CVE-2022-48313
The Bluetooth module has a vulnerability of bypassing the user confirmation in the pairing process. Successful exploitation of this vulnerability may affect confidentiality.
Published 2023-04-16 · Modified
6.5EPSS 0.002
CVE-2022-48314
The Bluetooth module has a vulnerability of bypassing the user confirmation in the pairing process. Successful exploitation of this vulnerability may affect confidentiality.
Published 2023-04-16 · Modified
6.5EPSS 0.002
CVE-2023-52554
Permission control vulnerability in the Bluetooth module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2024-04-08 · Analyzed
6.5EPSS 0.002
CVE-2026-34860
Access control vulnerability in the memo module. Impact: Successful exploitation of this vulnerability will affect availability and confidentiality.
Published 2026-04-13 · Analyzed
6.5EPSS 0.002
CVE-2025-54623
Out-of-bounds read vulnerability in the devicemanager module. Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-08-06 · Analyzed
6.5EPSS 0.002
CVE-2025-54648
Out-of-bounds read vulnerability in the SSAP module of the NearLink protocol stack. Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-08-06 · Analyzed
6.5EPSS 0.001
CVE-2025-54647
Out-of-bounds read vulnerability in the SSAP module of the NearLink protocol stack. Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-08-06 · Analyzed
6.5EPSS 0.001
CVE-2026-24917
UAF vulnerability in the security module. Impact: Successful exploitation of this vulnerability may affect availability.
Published 2026-02-06 · Analyzed
6.5EPSS 0.001
CVE-2024-4046
Cracking vulnerability in the OS security module Impact: Successful exploitation of this vulnerability will affect availability.
Published 2024-05-11 · Analyzed
6.4EPSS 0.001
← Prev19 / 27Next →