VendorsHuaweiharmonyos5.0.1
Vulnerabilities

Huawei Harmonyos 5.0.1

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

110CVEs
CVE-2025-54627
Out-of-bounds write vulnerability in the skia module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-08-06 · Analyzed
8.8EPSS 0.002
CVE-2025-54653
Path traversal vulnerability in the virtualization file module. Successful exploitation of this vulnerability may affect the confidentiality of the virtualization file module.
Published 2025-08-06 · Analyzed
8.4EPSS 0.001
CVE-2025-54652
Path traversal vulnerability in the virtualization base module. Successful exploitation of this vulnerability may affect the confidentiality of the virtualization module.
Published 2025-08-06 · Analyzed
8.4EPSS 0.001
CVE-2025-58280
Vulnerability of exposing object heap addresses in the Ark eTS module. Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-09-05 · Analyzed
8.4EPSS 0.001
CVE-2025-58281
Out-of-bounds read vulnerability in the runtime interpreter module. Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-09-05 · Analyzed
8.4EPSS 0.001
CVE-2025-58299
Use After Free (UAF) vulnerability in the storage management module. Successful exploitation of this vulnerability may affect availability.
Published 2025-10-11 · Analyzed
8.4EPSS 0.001
CVE-2025-68960
Multi-thread race condition vulnerability in the video framework module. Impact: Successful exploitation of this vulnerability may affect availability.
Published 2026-01-14 · Analyzed
8.4EPSS 0.001
CVE-2025-66324
Input verification vulnerability in the compression and decompression module. Impact: Successful exploitation of this vulnerability may affect app data integrity.
Published 2025-12-08 · Analyzed
8.4EPSS 0.001
CVE-2025-58303
UAF vulnerability in the screen recording framework module. Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-11-28 · Analyzed
8.4EPSS 0.001
CVE-2025-66328
Multi-thread race condition vulnerability in the network management module. Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-12-08 · Analyzed
8.4EPSS 0.001
CVE-2025-54622
Binding authentication bypass vulnerability in the devicemanager module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-08-06 · Analyzed
8.3EPSS 0.001
CVE-2025-48911
Vulnerability of improper permission assignment in the note sharing module Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-06-06 · Analyzed
8.2EPSS 0.001
CVE-2025-54655
Race condition vulnerability in the virtualization base module. Successful exploitation of this vulnerability may affect the confidentiality and integrity of the virtualization graphics module.
Published 2025-08-06 · Analyzed
8.1EPSS 0.001
CVE-2025-58310
Permission control vulnerability in the distributed component. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-11-28 · Analyzed
8.0EPSS 0.001
CVE-2025-54634
Vulnerability of improper processing of abnormal conditions in huge page separation. Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-08-06 · Analyzed
8.0EPSS 0.001
CVE-2025-58287
Use After Free (UAF) vulnerability in the office service. Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-10-11 · Analyzed
7.8EPSS 0.001
CVE-2025-54607
Authentication management vulnerability in the ArkWeb module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-08-06 · Analyzed
7.7EPSS 0.003
CVE-2025-53169
Vulnerability of bypassing the process to start SA and use related functions on distributed cameras Impact: Successful exploitation of this vulnerability may allow the peer device to use the camera without user awareness.
Published 2025-07-07 · Analyzed
7.6EPSS 0.001
CVE-2025-54630
:Vulnerability of insufficient data length verification in the DFA module. Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-08-06 · Analyzed
7.5EPSS 0.002
CVE-2025-54628
Vulnerability of incomplete verification information in the communication module. Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-08-06 · Analyzed
7.5EPSS 0.002
CVE-2025-53167
Authentication vulnerability in the distributed collaboration framework module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-07-07 · Analyzed
7.5EPSS 0.002
CVE-2025-54609
Out-of-bounds access vulnerability in the audio codec module. Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-08-06 · Analyzed
7.5EPSS 0.002
CVE-2025-54610
Out-of-bounds access vulnerability in the audio codec module. Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-08-06 · Analyzed
7.5EPSS 0.002
CVE-2025-53183
Null pointer dereference vulnerability in the PDF preview module Impact: Successful exploitation of this vulnerability may affect function stability.
Published 2025-07-07 · Analyzed
7.5EPSS 0.002
CVE-2025-53184
Null pointer dereference vulnerability in the PDF preview module Impact: Successful exploitation of this vulnerability may affect function stability.
Published 2025-07-07 · Analyzed
7.5EPSS 0.002
CVE-2025-53179
Null pointer dereference vulnerability in the PDF preview module Impact: Successful exploitation of this vulnerability may affect function stability.
Published 2025-07-07 · Analyzed
7.5EPSS 0.002
CVE-2025-53180
Null pointer dereference vulnerability in the PDF preview module Impact: Successful exploitation of this vulnerability may affect function stability.
Published 2025-07-07 · Analyzed
7.5EPSS 0.002
CVE-2025-53181
Null pointer dereference vulnerability in the PDF preview module Impact: Successful exploitation of this vulnerability may affect function stability.
Published 2025-07-07 · Analyzed
7.5EPSS 0.002
CVE-2025-53182
Null pointer dereference vulnerability in the PDF preview module Impact: Successful exploitation of this vulnerability may affect function stability.
Published 2025-07-07 · Analyzed
7.5EPSS 0.002
CVE-2025-64312
Permission control vulnerability in the file management module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-11-28 · Analyzed
7.5EPSS 0.002
CVE-2025-58296
Race condition vulnerability in the audio module. Impact: Successful exploitation of this vulnerability may affect function stability.
Published 2025-09-05 · Analyzed
7.5EPSS 0.001
CVE-2025-54606
Status verification vulnerability in the lock screen module. Impact: Successful exploitation of this vulnerability will affect availability and confidentiality.
Published 2025-08-06 · Analyzed
7.3EPSS 0.001
CVE-2025-58298
Data processing error vulnerability in the package management module. Successful exploitation of this vulnerability may affect availability.
Published 2025-10-11 · Analyzed
7.3EPSS 0.001
CVE-2025-58308
Vulnerability of improper criterion security check in the call module. Impact: Successful exploitation of this vulnerability may cause features to perform abnormally.
Published 2025-11-28 · Analyzed
7.3EPSS 0.001
CVE-2025-58316
DoS vulnerability in the video-related system service module. Impact: Successful exploitation of this vulnerability may affect availability.
Published 2025-11-28 · Analyzed
7.3EPSS 0.001
CVE-2025-58314
Vulnerability of accessing invalid memory in the component driver module. Impact: Successful exploitation of this vulnerability will affect availability and confidentiality.
Published 2025-11-28 · Analyzed
7.1EPSS 0.001
CVE-2025-58309
Permission control vulnerability in the startup recovery module. Impact: Successful exploitation of this vulnerability will affect availability and confidentiality.
Published 2025-11-28 · Analyzed
7.1EPSS 0.001
CVE-2025-58311
UAF vulnerability in the USB driver module. Impact: Successful exploitation of this vulnerability will affect availability and confidentiality.
Published 2025-11-28 · Analyzed
7.1EPSS 0.001
CVE-2025-66327
Race condition vulnerability in the network module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Published 2025-12-08 · Analyzed
7.1EPSS 0.001
CVE-2025-54632
Vulnerability of insufficient data length verification in the HVB module. Impact: Successful exploitation of this vulnerability may affect service integrity.
Published 2025-08-06 · Analyzed
6.8EPSS 0.001
1 / 3Next →