Huawei Emui vulnerabilities

820 known vulnerabilities affecting huawei/emui.

Total CVEs
820
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL148HIGH461MEDIUM193LOW18

Vulnerabilities

Page 22 of 41
CVE-2022-48297HIGHCVSS 7.5v12.0.12023-02-09
CVE-2022-48297 [HIGH] CWE-1284 CVE-2022-48297: The geofencing kernel code has a vulnerability of not verifying the length of the input data. Succes The geofencing kernel code has a vulnerability of not verifying the length of the input data. Successful exploitation of this vulnerability may cause out-of-bounds memory access.
cvelistv5nvd
CVE-2022-48301HIGHCVSS 7.5v11.0.1v12.0.0+1 more2023-02-09
CVE-2022-48301 [HIGH] CWE-281 CVE-2022-48301: The bundle management module lacks permission verification in some APIs. Successful exploitation of The bundle management module lacks permission verification in some APIs. Successful exploitation of this vulnerability may restore the pre-installed apps that have been uninstalled.
cvelistv5nvd
CVE-2022-48292MEDIUMCVSS 6.5v11.0.1v12.0.0+1 more2023-02-09
CVE-2022-48292 [MEDIUM] CWE-125 CVE-2022-48292: The Bluetooth module has an out-of-memory (OOM) vulnerability. Successful exploitation of this vulne The Bluetooth module has an out-of-memory (OOM) vulnerability. Successful exploitation of this vulnerability may affect data confidentiality.
cvelistv5nvd
CVE-2022-48296MEDIUMCVSS 5.3v11.0.1v12.0.0+1 more2023-02-09
CVE-2022-48296 [MEDIUM] CWE-281 CVE-2022-48296: The SystemUI has a vulnerability in permission management. Successful exploitation of this vulnerabi The SystemUI has a vulnerability in permission management. Successful exploitation of this vulnerability may cause users to receive broadcasts from malicious apps, conveying false alarm information about external storage devices.
cvelistv5nvd
CVE-2022-48293MEDIUMCVSS 6.5v11.0.1v12.0.0+1 more2023-02-09
CVE-2022-48293 [MEDIUM] CWE-125 CVE-2022-48293: The Bluetooth module has an OOM vulnerability. Successful exploitation of this vulnerability may aff The Bluetooth module has an OOM vulnerability. Successful exploitation of this vulnerability may affect data confidentiality.
cvelistv5nvd
CVE-2021-46868HIGHCVSS 7.5v12.0.02023-01-06
CVE-2021-46868 [HIGH] CWE-125 CVE-2021-46868: The HW_KEYMASTER module has a problem in releasing memory.Successful exploitation of this vulnerabil The HW_KEYMASTER module has a problem in releasing memory.Successful exploitation of this vulnerability may result in out-of-bounds memory access.
cvelistv5nvd
CVE-2022-46762HIGHCVSS 7.5v12.0.02023-01-06
CVE-2022-46762 [HIGH] CWE-693 CVE-2022-46762: The memory management module has a logic bypass vulnerability.Successful exploitation of this vulner The memory management module has a logic bypass vulnerability.Successful exploitation of this vulnerability may affect data confidentiality.
cvelistv5nvd
CVE-2022-47975HIGHCVSS 7.5v12.0.02023-01-06
CVE-2022-47975 [HIGH] CWE-415 CVE-2022-47975: The DUBAI module has a double free vulnerability. Successful exploitation of this vulnerability may The DUBAI module has a double free vulnerability. Successful exploitation of this vulnerability may affect system availability.
cvelistv5nvd
CVE-2021-46867HIGHCVSS 7.5v12.0.02023-01-06
CVE-2021-46867 [HIGH] CWE-125 CVE-2021-46867: The HW_KEYMASTER module has a problem in releasing memory.Successful exploitation of this vulnerabil The HW_KEYMASTER module has a problem in releasing memory.Successful exploitation of this vulnerability may result in out-of-bounds memory access.
cvelistv5nvd
CVE-2022-46761HIGHCVSS 7.5v11.0.1v12.0.0+1 more2023-01-06
CVE-2022-46761 [HIGH] CWE-276 CVE-2022-46761: The system has a vulnerability that may cause dynamic hiding and restoring of app icons.Successful e The system has a vulnerability that may cause dynamic hiding and restoring of app icons.Successful exploitation of this vulnerability may cause malicious hiding of app icons.
cvelistv5nvd
CVE-2022-47976HIGHCVSS 7.5v12.0.02023-01-06
CVE-2022-47976 [HIGH] CWE-287 CVE-2022-47976: The DMSDP module of the distributed hardware has a vulnerability that may cause imposter control con The DMSDP module of the distributed hardware has a vulnerability that may cause imposter control connections.Successful exploitation of this vulnerability may disconnect normal service connections.
cvelistv5nvd
CVE-2022-47974MEDIUMCVSS 6.5v11.0.1v12.0.0+1 more2023-01-06
CVE-2022-47974 [MEDIUM] CWE-287 CVE-2022-47974: The Bluetooth AVRCP module has a vulnerability that can lead to DoS attacks.Successful exploitation The Bluetooth AVRCP module has a vulnerability that can lead to DoS attacks.Successful exploitation of this vulnerability may cause the Bluetooth process to restart.
cvelistv5nvd
CVE-2022-46320CRITICALCVSS 9.8v11.0.1v12.0.0+1 more2022-12-20
CVE-2022-46320 [CRITICAL] CWE-125 CVE-2022-46320: The kernel module has an out-of-bounds read vulnerability. Successful exploitation of this vulnerabi The kernel module has an out-of-bounds read vulnerability. Successful exploitation of this vulnerability may cause memory overwriting.
cvelistv5nvd
CVE-2022-46323CRITICALCVSS 9.8v12.0.02022-12-20
CVE-2022-46323 [CRITICAL] CWE-787 CVE-2022-46323: Some smartphones have the out-of-bounds write vulnerability.Successful exploitation of this vulnerab Some smartphones have the out-of-bounds write vulnerability.Successful exploitation of this vulnerability may cause system service exceptions.
cvelistv5nvd
CVE-2022-46326CRITICALCVSS 9.8v12.0.02022-12-20
CVE-2022-46326 [CRITICAL] CWE-787 CVE-2022-46326: Some smartphones have the out-of-bounds write vulnerability. Successful exploitation of this vulnera Some smartphones have the out-of-bounds write vulnerability. Successful exploitation of this vulnerability may cause system service exceptions.
cvelistv5nvd
CVE-2022-46327CRITICALCVSS 9.8v12.0.02022-12-20
CVE-2022-46327 [CRITICAL] CWE-269 CVE-2022-46327: Some smartphones have configuration issues. Successful exploitation of this vulnerability may cause Some smartphones have configuration issues. Successful exploitation of this vulnerability may cause privilege escalation, which results in system service exceptions.
cvelistv5nvd
CVE-2022-46324CRITICALCVSS 9.8v12.0.02022-12-20
CVE-2022-46324 [CRITICAL] CWE-787 CVE-2022-46324: Some smartphones have the out-of-bounds write vulnerability. Successful exploitation of this vulnera Some smartphones have the out-of-bounds write vulnerability. Successful exploitation of this vulnerability may cause system service exceptions.
cvelistv5nvd
CVE-2022-46325CRITICALCVSS 9.8v12.0.02022-12-20
CVE-2022-46325 [CRITICAL] CWE-787 CVE-2022-46325: Some smartphones have the out-of-bounds write vulnerability.Successful exploitation of this vulnerab Some smartphones have the out-of-bounds write vulnerability.Successful exploitation of this vulnerability may cause system service exceptions.
cvelistv5nvd
CVE-2022-46319CRITICALCVSS 9.8v11.0.1v12.0.02022-12-20
CVE-2022-46319 [CRITICAL] CWE-787 CVE-2022-46319: Fingerprint calibration has a vulnerability of lacking boundary judgment. Successful exploitation of Fingerprint calibration has a vulnerability of lacking boundary judgment. Successful exploitation of this vulnerability may cause out-of-bounds write.
cvelistv5nvd
CVE-2022-46315HIGHCVSS 7.5v12.0.0v12.0.12022-12-20
CVE-2022-46315 [HIGH] CWE-400 CVE-2022-46315: The ProfileSDK has defects introduced in the design process. Successful exploitation of this vulnera The ProfileSDK has defects introduced in the design process. Successful exploitation of this vulnerability may affect system availability.
cvelistv5nvd