VendorsHuaweiharmonyos5.0.0
Vulnerabilities

Huawei Harmonyos 5.0.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

100CVEs
CVE-2024-57959
Use-After-Free (UAF) vulnerability in the display module Impact: Successful exploitation of this vulnerability may cause features to perform abnormally.
Published 2025-02-06 · Analyzed
9.8EPSS 0.002
CVE-2024-57958
Out-of-bounds array read vulnerability in the FFRT module Impact: Successful exploitation of this vulnerability may cause features to perform abnormally.
Published 2025-02-06 · Analyzed
9.1EPSS 0.002
CVE-2025-31170
Access control vulnerability in the security verification module Impact: Successful exploitation of this vulnerability will affect integrity and confidentiality.
Published 2025-04-07 · Analyzed
9.1EPSS 0.002
CVE-2025-48906
Authentication bypass vulnerability in the DSoftBus module Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-06-06 · Analyzed
8.8EPSS 0.002
CVE-2025-31173
Memory write permission bypass vulnerability in the kernel futex module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-04-07 · Analyzed
8.8EPSS 0.001
CVE-2024-58045
Multi-concurrency vulnerability in the media digital copyright protection module Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-03-04 · Analyzed
8.6EPSS 0.001
CVE-2024-51526
Permission control vulnerability in the hidebug module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2024-11-05 · Analyzed
8.2EPSS 0.001
CVE-2025-48905
Wasm exception capture vulnerability in the arkweb v8 module Impact: Successful exploitation of this vulnerability may cause the failure to capture specific Wasm exception types.
Published 2025-06-06 · Analyzed
8.1EPSS 0.003
CVE-2025-46584
Vulnerability of improper authentication logic implementation in the file system module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-05-06 · Analyzed
7.8EPSS 0.001
CVE-2025-48903
Permission bypass vulnerability in the media library module Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-06-06 · Analyzed
7.8EPSS 0.001
CVE-2025-31172
Memory write permission bypass vulnerability in the kernel futex module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-04-07 · Analyzed
7.8EPSS 0.001
CVE-2025-46588
Vulnerability of unauthorized access in the app lock module Impact: Successful exploitation of this vulnerability will affect integrity and confidentiality.
Published 2025-05-06 · Analyzed
7.7EPSS 0.001
CVE-2024-51510
Out-of-bounds access vulnerability in the logo module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2024-11-05 · Analyzed
7.6EPSS 0.001
CVE-2025-31174
Path traversal vulnerability in the DFS module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-04-07 · Analyzed
7.5EPSS 0.004
CVE-2024-58112
Exception capture failure vulnerability in the SVG parsing module of the ArkUI framework Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-04-07 · Analyzed
7.5EPSS 0.004
CVE-2024-58113
Vulnerability of improper resource management in the memory management module Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-04-07 · Analyzed
7.5EPSS 0.004
CVE-2024-58111
Exception capture failure vulnerability in the SVG parsing module of the ArkUI framework Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-04-07 · Analyzed
7.5EPSS 0.004
CVE-2024-58107
Buffer overflow vulnerability in the codec module Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-04-07 · Analyzed
7.5EPSS 0.004
CVE-2024-54109
Read/Write vulnerability in the image decoding module Impact: Successful exploitation of this vulnerability will affect availability.
Published 2024-12-12 · Modified
7.5EPSS 0.003
CVE-2024-57957
Vulnerability of improper log information control in the UI framework module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-02-06 · Analyzed
7.5EPSS 0.003
CVE-2024-51518
Vulnerability of message types not being verified in the advanced messaging modul Impact: Successful exploitation of this vulnerability may affect availability.
Published 2024-11-05 · Analyzed
7.5EPSS 0.003
CVE-2024-54117
Cross-process screen stack vulnerability in the UIExtension module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2024-12-12 · Analyzed
7.5EPSS 0.003
CVE-2024-54106
Null pointer dereference vulnerability in the image decoding module Impact: Successful exploitation of this vulnerability will affect availability.
Published 2024-12-12 · Analyzed
7.5EPSS 0.003
CVE-2024-54113
Process residence vulnerability in abnormal scenarios in the print module Impact: Successful exploitation of this vulnerability may affect power consumption.
Published 2024-12-12 · Modified
7.5EPSS 0.003
CVE-2024-54110
Cross-process screen stack vulnerability in the UIExtension module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2024-12-12 · Modified
7.5EPSS 0.003
CVE-2024-56444
Cross-process screen stack vulnerability in the UIExtension module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-01-08 · Analyzed
7.5EPSS 0.003
CVE-2024-58110
Buffer overflow vulnerability in the codec module Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-04-07 · Analyzed
7.5EPSS 0.003
CVE-2024-58106
Buffer overflow vulnerability in the codec module Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-04-07 · Analyzed
7.5EPSS 0.003
CVE-2024-58108
Buffer overflow vulnerability in the codec module Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-04-07 · Analyzed
7.5EPSS 0.003
CVE-2024-58109
Buffer overflow vulnerability in the codec module Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-04-07 · Analyzed
7.5EPSS 0.003
CVE-2024-54115
Out-of-bounds read vulnerability in the DASH module Impact: Successful exploitation of this vulnerability will affect availability.
Published 2024-12-12 · Analyzed
7.5EPSS 0.002
CVE-2024-54116
Out-of-bounds read vulnerability in the M3U8 module Impact: Successful exploitation of this vulnerability may cause features to perform abnormally.
Published 2024-12-12 · Analyzed
7.5EPSS 0.002
CVE-2024-57954
Permission verification vulnerability in the media library module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-02-06 · Analyzed
7.5EPSS 0.002
CVE-2024-54108
Read/Write vulnerability in the image decoding module Impact: Successful exploitation of this vulnerability will affect availability.
Published 2024-12-12 · Modified
7.5EPSS 0.002
CVE-2024-12602
Identity verification vulnerability in the ParamWatcher module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-02-06 · Analyzed
7.5EPSS 0.002
CVE-2024-54107
Read/Write vulnerability in the image decoding module Impact: Successful exploitation of this vulnerability will affect availability.
Published 2024-12-12 · Modified
7.5EPSS 0.002
CVE-2024-54119
Cross-process screen stack vulnerability in the UIExtension module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2024-12-12 · Analyzed
7.5EPSS 0.002
CVE-2024-54104
Cross-process screen stack vulnerability in the UIExtension module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2024-12-12 · Analyzed
7.5EPSS 0.002
CVE-2024-56437
Vulnerability of input parameters not being verified in the widget framework module Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-01-08 · Analyzed
7.5EPSS 0.002
CVE-2024-58116
Buffer overflow vulnerability in the SVG parsing module of the ArkUI framework Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-04-07 · Analyzed
7.5EPSS 0.002
1 / 3Next →