Huawei Emui vulnerabilities

820 known vulnerabilities affecting huawei/emui.

Total CVEs
820
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL148HIGH461MEDIUM193LOW18

Vulnerabilities

Page 27 of 41
CVE-2022-38990HIGHCVSS 7.5v10.1.0v10.1.1+1 more2022-09-16
CVE-2022-38990 [HIGH] CVE-2022-38990: The secure OS module has configuration defects. Successful exploitation of this vulnerability may af The secure OS module has configuration defects. Successful exploitation of this vulnerability may affect system availability.
cvelistv5nvd
CVE-2021-40023HIGHCVSS 7.5v12.0.02022-09-16
CVE-2021-40023 [HIGH] CVE-2021-40023: Configuration defects in the secure OS module. Successful exploitation of this vulnerability will af Configuration defects in the secure OS module. Successful exploitation of this vulnerability will affect confidentiality.
cvelistv5nvd
CVE-2022-38995HIGHCVSS 7.5v12.0.02022-09-16
CVE-2022-38995 [HIGH] CVE-2022-38995: The secure OS module has configuration defects. Successful exploitation of this vulnerability may af The secure OS module has configuration defects. Successful exploitation of this vulnerability may affect system availability.
cvelistv5nvd
CVE-2022-38994HIGHCVSS 7.5v12.0.02022-09-16
CVE-2022-38994 [HIGH] CVE-2022-38994: The secure OS module has configuration defects. Successful exploitation of this vulnerability may af The secure OS module has configuration defects. Successful exploitation of this vulnerability may affect data confidentiality.
cvelistv5nvd
CVE-2020-36601HIGHCVSS 7.5v10.1.02022-09-16
CVE-2020-36601 [HIGH] CWE-787 CVE-2020-36601: Out-of-bounds write vulnerability in the kernel modules. Successful exploitation of this vulnerabili Out-of-bounds write vulnerability in the kernel modules. Successful exploitation of this vulnerability may cause a panic reboot.
cvelistv5nvd
CVE-2022-39004HIGHCVSS 7.5v11.0.0v11.0.1+1 more2022-09-16
CVE-2022-39004 [HIGH] CWE-401 CVE-2022-39004: The MPTCP module has the memory leak vulnerability. Successful exploitation of this vulnerability ca The MPTCP module has the memory leak vulnerability. Successful exploitation of this vulnerability can cause memory leaks.
cvelistv5nvd
CVE-2022-38992HIGHCVSS 7.5v10.1.0v10.1.1+1 more2022-09-16
CVE-2022-38992 [HIGH] CVE-2022-38992: The secure OS module has configuration defects. Successful exploitation of this vulnerability may af The secure OS module has configuration defects. Successful exploitation of this vulnerability may affect data confidentiality.
cvelistv5nvd
CVE-2022-38991HIGHCVSS 7.5v10.1.0v10.1.1+1 more2022-09-16
CVE-2022-38991 [HIGH] CVE-2022-38991: The secure OS module has configuration defects. Successful exploitation of this vulnerability may af The secure OS module has configuration defects. Successful exploitation of this vulnerability may affect data confidentiality.
cvelistv5nvd
CVE-2022-38978HIGHCVSS 7.5v10.1.0v10.1.1+2 more2022-09-16
CVE-2022-38978 [HIGH] CVE-2022-38978: The secure OS module has configuration defects. Successful exploitation of this vulnerability may af The secure OS module has configuration defects. Successful exploitation of this vulnerability may affect data confidentiality.
cvelistv5nvd
CVE-2021-40024HIGHCVSS 7.5v12.0.02022-09-16
CVE-2021-40024 [HIGH] CVE-2021-40024: Implementation of the WLAN module interfaces has the information disclosure vulnerability. Successfu Implementation of the WLAN module interfaces has the information disclosure vulnerability. Successful exploitation of this vulnerability may affect data confidentiality.
cvelistv5nvd
CVE-2020-36600HIGHCVSS 7.5v10.0.0v10.1.0+2 more2022-09-16
CVE-2020-36600 [HIGH] CWE-787 CVE-2020-36600: Out-of-bounds write vulnerability in the power consumption module. Successful exploitation of this v Out-of-bounds write vulnerability in the power consumption module. Successful exploitation of this vulnerability may cause the system to restart.
cvelistv5nvd
CVE-2022-38996HIGHCVSS 7.5v12.0.02022-09-16
CVE-2022-38996 [HIGH] CVE-2022-38996: The secure OS module has configuration defects. Successful exploitation of this vulnerability may af The secure OS module has configuration defects. Successful exploitation of this vulnerability may affect system availability.
cvelistv5nvd
CVE-2022-39006MEDIUMCVSS 5.9v11.0.0v11.0.1+1 more2022-09-16
CVE-2022-39006 [MEDIUM] CWE-362 CVE-2022-39006: The MPTCP module has the race condition vulnerability. Successful exploitation of this vulnerability The MPTCP module has the race condition vulnerability. Successful exploitation of this vulnerability may cause the device to restart.
cvelistv5nvd
CVE-2022-37002CRITICALCVSS 9.8v10.0.0v10.1.0+4 more2022-08-10
CVE-2022-37002 [CRITICAL] CWE-269 CVE-2022-37002: The SystemUI module has a privilege escalation vulnerability. Successful exploitation of this vulner The SystemUI module has a privilege escalation vulnerability. Successful exploitation of this vulnerability can cause malicious applications to pop up windows or run in the background.
cvelistv5nvd
CVE-2022-37003CRITICALCVSS 9.8v11.0.0v12.0.02022-08-10
CVE-2022-37003 [CRITICAL] CWE-276 CVE-2022-37003: The AOD module has a vulnerability in permission assignment. Successful exploitation of this vulnera The AOD module has a vulnerability in permission assignment. Successful exploitation of this vulnerability may cause permission escalation and unauthorized access to files.
cvelistv5nvd
CVE-2022-37004HIGHCVSS 7.5v10.0.0v10.1.0+4 more2022-08-10
CVE-2022-37004 [HIGH] CVE-2022-37004: The Settings application has a vulnerability of bypassing the out-of-box experience (OOBE). Successf The Settings application has a vulnerability of bypassing the out-of-box experience (OOBE). Successful exploitation of this vulnerability may affect the availability.
cvelistv5nvd
CVE-2022-37007HIGHCVSS 7.5v11.0.0v12.0.02022-08-10
CVE-2022-37007 [HIGH] CWE-125 CVE-2022-37007: The chinadrm module has an out-of-bounds read vulnerability. Successful exploitation of this vulnera The chinadrm module has an out-of-bounds read vulnerability. Successful exploitation of this vulnerability may affect the availability.
cvelistv5nvd
CVE-2021-40040HIGHCVSS 7.5v10.0.0v10.1.0+2 more2022-08-10
CVE-2021-40040 [HIGH] CVE-2021-40040: Vulnerability of writing data to an arbitrary address in the HW_KEYMASTER module. Successful exploit Vulnerability of writing data to an arbitrary address in the HW_KEYMASTER module. Successful exploitation of this vulnerability may affect confidentiality.
nvd
CVE-2022-37006HIGHCVSS 7.5v12.0.02022-08-10
CVE-2022-37006 [HIGH] CWE-276 CVE-2022-37006: Permission control vulnerability in the network module. Successful exploitation of this vulnerabilit Permission control vulnerability in the network module. Successful exploitation of this vulnerability may affect service availability.
nvd
CVE-2022-37008HIGHCVSS 7.5v11.0.0v11.0.1+1 more2022-08-10
CVE-2022-37008 [HIGH] CWE-345 CVE-2022-37008: The recovery module has a vulnerability of bypassing the verification of an update package before us The recovery module has a vulnerability of bypassing the verification of an update package before use. Successful exploitation of this vulnerability may affect system stability.
cvelistv5nvd