Huawei Emui vulnerabilities
820 known vulnerabilities affecting huawei/emui.
Total CVEs
820
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL148HIGH461MEDIUM193LOW18
Vulnerabilities
Page 28 of 41
CVE-2022-37005HIGHCVSS 7.5v10.1.1v11.0.0+2 more2022-08-10
CVE-2022-37005 [HIGH] CWE-88 CVE-2022-37005: The Settings application has an argument injection vulnerability. Successful exploitation of this vu
The Settings application has an argument injection vulnerability. Successful exploitation of this vulnerability may affect data confidentiality.
nvd
CVE-2021-40034HIGHCVSS 7.5v10.1.0v10.1.1+2 more2022-08-10
CVE-2021-40034 [HIGH] CVE-2021-40034: The video framework has the memory overwriting vulnerability caused by addition overflow. Successful
The video framework has the memory overwriting vulnerability caused by addition overflow. Successful exploitation of this vulnerability may affect the availability.
nvd
CVE-2021-40030HIGHCVSS 7.5v10.1.0v10.1.1+2 more2022-08-10
CVE-2021-40030 [HIGH] CVE-2021-40030: The My HUAWEI app has a defect in the design. Successful exploitation of this vulnerability may affe
The My HUAWEI app has a defect in the design. Successful exploitation of this vulnerability may affect data confidentiality.
nvd
CVE-2022-34737CRITICALCVSS 9.1v10.1.0v10.1.1+3 more2022-07-12
CVE-2022-34737 [CRITICAL] CWE-276 CVE-2022-34737: The application security module has a vulnerability in permission assignment. Successful exploitatio
The application security module has a vulnerability in permission assignment. Successful exploitation of this vulnerability may affect data integrity and confidentiality.
nvd
CVE-2022-34735HIGHCVSS 7.5v11.0.1v12.0.02022-07-12
CVE-2022-34735 [HIGH] CWE-476 CVE-2022-34735: The frame scheduling module has a null pointer dereference vulnerability. Successful exploitation of
The frame scheduling module has a null pointer dereference vulnerability. Successful exploitation of this vulnerability will affect the kernel availability.
nvd
CVE-2021-40012HIGHCVSS 7.5v11.0.0v12.0.02022-07-12
CVE-2021-40012 [HIGH] CVE-2021-40012: Vulnerability of pointers being incorrectly used during data transmission in the video framework. Su
Vulnerability of pointers being incorrectly used during data transmission in the video framework. Successful exploitation of this vulnerability may affect confidentiality.
nvd
CVE-2022-34743HIGHCVSS 7.5v10.1.0v10.1.1+3 more2022-07-12
CVE-2022-34743 [HIGH] CWE-125 CVE-2022-34743: The AT commands of the USB port have an out-of-bounds read vulnerability. Successful exploitation of
The AT commands of the USB port have an out-of-bounds read vulnerability. Successful exploitation of this vulnerability may affect system availability.
nvd
CVE-2022-34738HIGHCVSS 7.5v10.0.0v10.1.0+4 more2022-07-12
CVE-2022-34738 [HIGH] CVE-2022-34738: The SystemUI module has a vulnerability in permission control. If this vulnerability is successfully
The SystemUI module has a vulnerability in permission control. If this vulnerability is successfully exploited, users are unaware of the service running in the background.
nvd
CVE-2022-34739HIGHCVSS 7.5v10.0.0v10.1.0+3 more2022-07-12
CVE-2022-34739 [HIGH] CVE-2022-34739: The fingerprint module has a vulnerability of overflow in arithmetic addition. Successful exploitati
The fingerprint module has a vulnerability of overflow in arithmetic addition. Successful exploitation of this vulnerability may result in the acquisition of data from unknown addresses in address mappings.
nvd
CVE-2021-46741HIGHCVSS 7.5v10.0.0v10.1.0+4 more2022-07-12
CVE-2021-46741 [HIGH] CVE-2021-46741: The basic framework and setting module have defects, which were introduced during the design. Succes
The basic framework and setting module have defects, which were introduced during the design. Successful exploitation of this vulnerability may affect system integrity.
nvd
CVE-2022-34742HIGHCVSS 7.5v10.1.0v10.1.1+3 more2022-07-12
CVE-2022-34742 [HIGH] CWE-125 CVE-2022-34742: The system module has a read/write vulnerability. Successful exploitation of this vulnerability may
The system module has a read/write vulnerability. Successful exploitation of this vulnerability may affect data confidentiality.
nvd
CVE-2022-34736HIGHCVSS 7.5v11.0.1v12.0.02022-07-12
CVE-2022-34736 [HIGH] CWE-476 CVE-2022-34736: The frame scheduling module has a null pointer dereference vulnerability. Successful exploitation of
The frame scheduling module has a null pointer dereference vulnerability. Successful exploitation of this vulnerability will affect the kernel availability.
nvd
CVE-2021-40013MEDIUMCVSS 6.5v10.1.0v10.1.1+2 more2022-07-12
CVE-2021-40013 [MEDIUM] CVE-2021-40013: Improper permission control vulnerability in the Bluetooth module.Successful exploitation of this vu
Improper permission control vulnerability in the Bluetooth module.Successful exploitation of this vulnerability will affect integrity.
nvd
CVE-2021-40016MEDIUMCVSS 6.5v10.1.0v10.1.1+2 more2022-07-12
CVE-2021-40016 [MEDIUM] CVE-2021-40016: Improper permission control vulnerability in the Bluetooth module.Successful exploitation of this vu
Improper permission control vulnerability in the Bluetooth module.Successful exploitation of this vulnerability will affect confidentiality.
nvd
CVE-2022-34741MEDIUMCVSS 6.5v11.0.0v11.0.1+1 more2022-07-12
CVE-2022-34741 [MEDIUM] CWE-120 CVE-2022-34741: The NFC module has a buffer overflow vulnerability. Successful exploitation of this vulnerability ma
The NFC module has a buffer overflow vulnerability. Successful exploitation of this vulnerability may cause exceptions in NFC card registration, deletion, and activation.
nvd
CVE-2022-34740MEDIUMCVSS 6.5v11.0.0v11.0.1+1 more2022-07-12
CVE-2022-34740 [MEDIUM] CWE-120 CVE-2022-34740: The NFC module has a buffer overflow vulnerability. Successful exploitation of this vulnerability ma
The NFC module has a buffer overflow vulnerability. Successful exploitation of this vulnerability may cause exceptions in NFC card registration, deletion, and activation.
nvd
CVE-2022-31760CRITICALCVSS 9.1v10.1.0v10.1.1+2 more2022-06-13
CVE-2022-31760 [CRITICAL] CVE-2022-31760: Dialog boxes can still be displayed even if the screen is locked in carrier-customized USSD services
Dialog boxes can still be displayed even if the screen is locked in carrier-customized USSD services. Successful exploitation of this vulnerability may affect data integrity and confidentiality.
nvd
CVE-2022-31754HIGHCVSS 7.5v10.1.0v12.0.02022-06-13
CVE-2022-31754 [HIGH] CVE-2022-31754: Logical defects in code implementation in some products. Successful exploitation of this vulnerabili
Logical defects in code implementation in some products. Successful exploitation of this vulnerability may affect the availability of some features.
nvd
CVE-2022-31753HIGHCVSS 7.5v10.1.0v10.1.1+3 more2022-06-13
CVE-2022-31753 [HIGH] CWE-134 CVE-2022-31753: The voice wakeup module has a vulnerability of using externally-controlled format strings. Successfu
The voice wakeup module has a vulnerability of using externally-controlled format strings. Successful exploitation of this vulnerability may affect system availability.
nvd
CVE-2022-31761HIGHCVSS 7.5v10.1.1v11.0.02022-06-13
CVE-2022-31761 [HIGH] CVE-2022-31761: Configuration defects in the secure OS module. Successful exploitation of this vulnerability will af
Configuration defects in the secure OS module. Successful exploitation of this vulnerability will affect confidentiality.
nvd