VendorsHuaweimagic_ui4.0.0
Vulnerabilities

Huawei Magic 4.0.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

235CVEs
CVE-2021-40026
There is a Heap-based buffer overflow vulnerability in the AOD module in smartphones. Successful exploitation of this vulnerability may affect service integrity.
Published 2022-01-07 · Modified
7.5EPSS 0.006
CVE-2021-40061
There is a vulnerability of accessing resources using an incompatible type (type confusion) in the Bastet module. Successful exploitation of this vulnerability may affect integrity.
Published 2022-03-07 · Modified
7.5EPSS 0.006
CVE-2022-39005
The MPTCP module has the memory leak vulnerability. Successful exploitation of this vulnerability can cause memory leaks.
Published 2022-09-16 · Modified
7.5EPSS 0.006
CVE-2020-36600
Out-of-bounds write vulnerability in the power consumption module. Successful exploitation of this vulnerability may cause the system to restart.
Published 2022-09-16 · Modified
7.5EPSS 0.006
CVE-2021-22392
There is an Incorrect Calculation of Buffer Size in Huawei Smartphone.Successful exploitation of this vulnerability may cause verification bypass and directions to abnormal addresses.
Published 2021-08-02 · Modified
7.5EPSS 0.006
CVE-2021-40038
There is a Double free vulnerability in the AOD module in smartphones. Successful exploitation of this vulnerability may affect service integrity.
Published 2022-01-07 · Modified
7.5EPSS 0.006
CVE-2021-40039
There is a Null pointer dereference vulnerability in the camera module in smartphones. Successful exploitation of this vulnerability may affect service integrity.
Published 2022-01-07 · Modified
7.5EPSS 0.006
CVE-2021-36988
There is a Parameter verification issue in Huawei Smartphone.Successful exploitation of this vulnerability can affect service integrity.
Published 2021-10-28 · Modified
7.5EPSS 0.006
CVE-2021-40031
There is a Null pointer dereference vulnerability in the camera module in smartphones. Successful exploitation of this vulnerability may affect service integrity.
Published 2022-01-07 · Modified
7.5EPSS 0.006
CVE-2022-37004
The Settings application has a vulnerability of bypassing the out-of-box experience (OOBE). Successful exploitation of this vulnerability may affect the availability.
Published 2022-08-09 · Modified
7.5EPSS 0.006
CVE-2021-36995
There is an Unauthorized file access vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability by modifying soft links may tamper with the files restored from backups.
Published 2021-10-28 · Modified
7.5EPSS 0.006
CVE-2021-37001
There is a Register tampering vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may allow the register value to be modified.
Published 2021-10-28 · Modified
7.5EPSS 0.006
CVE-2022-37007
The chinadrm module has an out-of-bounds read vulnerability. Successful exploitation of this vulnerability may affect the availability.
Published 2022-08-09 · Modified
7.5EPSS 0.006
CVE-2021-40034
The video framework has the memory overwriting vulnerability caused by addition overflow. Successful exploitation of this vulnerability may affect the availability.
Published 2022-08-09 · Modified
7.5EPSS 0.006
CVE-2022-22257
The customization framework has a vulnerability of improper permission control.Successful exploitation of this vulnerability may affect data integrity.
Published 2022-04-11 · Modified
7.5EPSS 0.006
CVE-2022-34738
The SystemUI module has a vulnerability in permission control. If this vulnerability is successfully exploited, users are unaware of the service running in the background.
Published 2022-07-11 · Modified
7.5EPSS 0.006
CVE-2022-39004
The MPTCP module has the memory leak vulnerability. Successful exploitation of this vulnerability can cause memory leaks.
Published 2022-09-16 · Modified
7.5EPSS 0.006
CVE-2021-46788
Third-party pop-up window coverage vulnerability in the iConnect module.Successful exploitation of this vulnerability may cause system pop-up window may be covered to mislead users to perform incorrect operations.
Published 2022-05-13 · Modified
7.5EPSS 0.006
CVE-2021-40040
Vulnerability of writing data to an arbitrary address in the HW_KEYMASTER module. Successful exploitation of this vulnerability may affect confidentiality.
Published 2022-08-09 · Modified
7.5EPSS 0.005
CVE-2022-37005
The Settings application has an argument injection vulnerability. Successful exploitation of this vulnerability may affect data confidentiality.
Published 2022-08-09 · Modified
7.5EPSS 0.005
CVE-2021-40030
The My HUAWEI app has a defect in the design. Successful exploitation of this vulnerability may affect data confidentiality.
Published 2022-08-09 · Modified
7.5EPSS 0.005
CVE-2022-38979
The secure OS module has configuration defects. Successful exploitation of this vulnerability may affect data confidentiality.
Published 2022-09-16 · Modified
7.5EPSS 0.005
CVE-2022-38978
The secure OS module has configuration defects. Successful exploitation of this vulnerability may affect data confidentiality.
Published 2022-09-16 · Modified
7.5EPSS 0.005
CVE-2022-38997
The secure OS module has configuration defects. Successful exploitation of this vulnerability may affect data confidentiality.
Published 2022-09-16 · Modified
7.5EPSS 0.005
CVE-2021-22442
There is an Improper Validation of Integrity Check Value Vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may cause the system to reset.
Published 2021-08-02 · Modified
7.5EPSS 0.003
CVE-2021-37050
There is a Missing sensitive data encryption vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may affect service confidentiality.
Published 2021-12-08 · Modified
7.5EPSS 0.003
CVE-2022-22253
The DFX module has a vulnerability of improper validation of integrity check values.Successful exploitation of this vulnerability may affect system stability.
Published 2022-04-11 · Modified
7.5EPSS 0.003
CVE-2022-37008
The recovery module has a vulnerability of bypassing the verification of an update package before use. Successful exploitation of this vulnerability may affect system stability.
Published 2022-08-09 · Modified
7.5EPSS 0.003
CVE-2021-37069
There is a Race Condition vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to availability affected.
Published 2021-12-08 · Modified
7.4EPSS 0.005
CVE-2021-22334
There is an Improper Access Control vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may cause app redirections.
Published 2021-06-03 · Modified
7.4EPSS 0.002
CVE-2021-40055
There is a man-in-the-middle attack vulnerability during system update download in recovery mode. Successful exploitation of this vulnerability may affect integrity.
Published 2022-03-07 · Modified
7.1EPSS 0.005
CVE-2021-36987
There is a issue that nodes in the linked list being freed for multiple times in Huawei Smartphone due to race conditions. Successful exploitation of this vulnerability can cause the system to restart.
Published 2021-10-28 · Modified
7.1EPSS 0.005
CVE-2021-22386
A component of the Huawei smartphone has a Double Free vulnerability. Local attackers may exploit this vulnerability to cause Root Elevation of Privileges.
Published 2021-08-10 · Modified
7.0EPSS 0.002
CVE-2021-22316
There is a Missing Authentication for Critical Function vulnerability in Huawei Smartphone. Attackers with physical access to the device can thereby exploit this vulnerability. A successful exploitation of this vulnerability can compromise the device's data security and functional availability.
Published 2021-06-03 · Modified
6.8EPSS 0.002
CVE-2022-34740
The NFC module has a buffer overflow vulnerability. Successful exploitation of this vulnerability may cause exceptions in NFC card registration, deletion, and activation.
Published 2022-07-11 · Modified
6.5EPSS 0.003
CVE-2022-34741
The NFC module has a buffer overflow vulnerability. Successful exploitation of this vulnerability may cause exceptions in NFC card registration, deletion, and activation.
Published 2022-07-11 · Modified
6.5EPSS 0.003
CVE-2021-40016
Improper permission control vulnerability in the Bluetooth module.Successful exploitation of this vulnerability will affect confidentiality.
Published 2022-07-11 · Modified
6.5EPSS 0.003
CVE-2021-40059
There is a permission control vulnerability in the Wi-Fi module. Successful exploitation of this vulnerability may affect confidentiality.
Published 2022-03-07 · Modified
6.5EPSS 0.003
CVE-2021-37039
There is an Input verification vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may cause Bluetooth DoS.
Published 2021-12-08 · Modified
6.5EPSS 0.003
CVE-2021-40013
Improper permission control vulnerability in the Bluetooth module.Successful exploitation of this vulnerability will affect integrity.
Published 2022-07-11 · Modified
6.5EPSS 0.003
← Prev5 / 6Next →