VendorsHuaweiharmonyos4.2.0
Vulnerabilities

Huawei Harmonyos 4.2.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

108CVEs
CVE-2024-32991
Permission verification vulnerability in the wpa_supplicant module Impact: Successful exploitation of this vulnerability will affect availability.
Published 2024-05-11 · Analyzed
9.8EPSS 0.006
CVE-2024-57961
Out-of-bounds write vulnerability in the emcom module Impact: Successful exploitation of this vulnerability may cause features to perform abnormally.
Published 2025-02-06 · Analyzed
9.8EPSS 0.003
CVE-2024-57959
Use-After-Free (UAF) vulnerability in the display module Impact: Successful exploitation of this vulnerability may cause features to perform abnormally.
Published 2025-02-06 · Analyzed
9.8EPSS 0.002
CVE-2024-42037
Vulnerability of uncaught exceptions in the Graphics module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2024-08-08 · Analyzed
9.3EPSS 0.001
CVE-2024-39671
Access control vulnerability in the security verification module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2024-07-25 · Modified
9.3EPSS 0.001
CVE-2024-45443
Directory traversal vulnerability in the cust module Impact: Successful exploitation of this vulnerability will affect availability and confidentiality.
Published 2024-09-04 · Analyzed
9.1EPSS 0.005
CVE-2024-57958
Out-of-bounds array read vulnerability in the FFRT module Impact: Successful exploitation of this vulnerability may cause features to perform abnormally.
Published 2025-02-06 · Analyzed
9.1EPSS 0.002
CVE-2024-42038
Vulnerability of PIN enhancement failures in the screen lock module Impact: Successful exploitation of this vulnerability may affect service confidentiality, integrity, and availability.
Published 2024-08-08 · Modified
8.8EPSS 0.001
CVE-2024-54098
Service logic error vulnerability in the system service module Impact: Successful exploitation of this vulnerability may affect service integrity.
Published 2024-12-12 · Analyzed
8.5EPSS 0.002
CVE-2024-32997
Race condition vulnerability in the binder driver module Impact: Successful exploitation of this vulnerability will affect availability.
Published 2024-05-11 · Analyzed
8.4EPSS 0.001
CVE-2024-42035
Permission control vulnerability in the App Multiplier module Impact:Successful exploitation of this vulnerability may affect functionality and confidentiality.
Published 2024-08-08 · Modified
8.4EPSS 0.001
CVE-2024-39672
Memory request logic vulnerability in the memory module. Impact: Successful exploitation of this vulnerability will affect integrity and availability.
Published 2024-07-25 · Modified
8.4EPSS 0.001
CVE-2024-58044
Permission verification bypass vulnerability in the notification module Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-03-04 · Analyzed
8.4EPSS 0.001
CVE-2025-58302
Permission control vulnerability in the Settings module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-11-28 · Analyzed
8.4EPSS 0.001
CVE-2024-36502
Out-of-bounds read vulnerability in the audio module Impact: Successful exploitation of this vulnerability will affect availability.
Published 2024-06-14 · Modified
7.9EPSS 0.001
CVE-2024-56447
Vulnerability of improper permission control in the window management module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-01-08 · Analyzed
7.8EPSS 0.003
CVE-2024-36500
Privilege escalation vulnerability in the AMS module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2024-06-14 · Modified
7.8EPSS 0.001
CVE-2026-34853
Permission bypass vulnerability in the LBS module. Impact: Successful exploitation of this vulnerability may affect availability.
Published 2026-04-13 · Analyzed
7.7EPSS 0.002
CVE-2024-57960
Input verification vulnerability in the ExternalStorageProvider module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-02-06 · Analyzed
7.7EPSS 0.002
CVE-2024-51510
Out-of-bounds access vulnerability in the logo module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2024-11-05 · Analyzed
7.6EPSS 0.001
CVE-2024-32992
Insufficient verification vulnerability in the baseband module Impact: Successful exploitation of this vulnerability will affect availability.
Published 2024-05-11 · Analyzed
7.5EPSS 0.005
CVE-2024-32989
Insufficient verification vulnerability in the system sharing pop-up module Impact: Successful exploitation of this vulnerability will affect availability.
Published 2024-05-11 · Analyzed
7.5EPSS 0.004
CVE-2026-28552
Out-of-bounds write vulnerability in the IMS module. Impact: Successful exploitation of this vulnerability may affect availability.
Published 2026-03-05 · Analyzed
7.5EPSS 0.004
CVE-2024-32990
Permission verification vulnerability in the system sharing pop-up module Impact: Successful exploitation of this vulnerability will affect availability.
Published 2024-05-11 · Analyzed
7.5EPSS 0.004
CVE-2024-54097
Security vulnerability in the HiView module Impact: Successful exploitation of this vulnerability may affect feature implementation and integrity.
Published 2024-12-12 · Analyzed
7.5EPSS 0.003
CVE-2024-42031
Access permission verification vulnerability in the Settings module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2024-08-08 · Modified
7.5EPSS 0.003
CVE-2025-54628
Vulnerability of incomplete verification information in the communication module. Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-08-06 · Analyzed
7.5EPSS 0.002
CVE-2024-56448
Vulnerability of improper access control in the home screen widget module Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-01-08 · Analyzed
7.5EPSS 0.002
CVE-2024-42039
Access control vulnerability in the SystemUI module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2024-09-04 · Modified
7.5EPSS 0.002
CVE-2024-47294
Access permission verification vulnerability in the input method framework module Impact: Successful exploitation of this vulnerability may affect availability.
Published 2024-09-27 · Analyzed
7.5EPSS 0.002
CVE-2024-54100
Vulnerability of improper access control in the secure input module Impact: Successful exploitation of this vulnerability may cause features to perform abnormally.
Published 2024-12-12 · Analyzed
7.5EPSS 0.002
CVE-2024-9136
Access permission verification vulnerability in the App Multiplier module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2024-09-27 · Modified
7.5EPSS 0.002
CVE-2024-45441
Input verification vulnerability in the system service module Impact: Successful exploitation of this vulnerability will affect availability.
Published 2024-09-04 · Analyzed
7.5EPSS 0.002
CVE-2024-56438
Vulnerability of improper memory address protection in the HUKS module Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-01-08 · Analyzed
7.5EPSS 0.002
CVE-2024-47293
Out-of-bounds write vulnerability in the HAL-WIFI module Impact: Successful exploitation of this vulnerability may affect availability.
Published 2024-09-27 · Analyzed
7.5EPSS 0.002
CVE-2024-56440
Permission control vulnerability in the Connectivity module Impact: Successful exploitation of this vulnerability may cause features to perform abnormally.
Published 2025-01-08 · Analyzed
7.5EPSS 0.002
CVE-2024-45450
Permission control vulnerability in the software update module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2024-09-04 · Analyzed
7.5EPSS 0.002
CVE-2024-45442
Vulnerability of permission verification for APIs in the DownloadProviderMain module Impact: Successful exploitation of this vulnerability will affect availability.
Published 2024-09-04 · Analyzed
7.5EPSS 0.002
CVE-2024-56449
Privilege escalation vulnerability in the Account module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-01-08 · Analyzed
7.5EPSS 0.002
CVE-2026-28553
Vulnerability of improper permission control in the theme setting module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2026-04-13 · Analyzed
7.5EPSS 0.002
1 / 3Next →