cbcvebase.

Huawei Emui vulnerabilities

831 known vulnerabilities affecting huawei/emui.

Total CVEs
831
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL148HIGH465MEDIUM199LOW19

Vulnerabilities

Page 31 of 42
CVE-2022-48357P4HIGHCVSS 7.5v11.0.1v12.0.0+2 more2023-03-27
CVE-2022-48357 [HIGH] CWE-770 CVE-2022-48357: Some products have the double fetch vulnerability. Successful exploitation of this vulnerability may Some products have the double fetch vulnerability. Successful exploitation of this vulnerability may cause denial of service (DoS) attacks to the kernel.
nvd
CVE-2021-22334P4HIGHCVSS 7.4v10.1.1v11.0.02021-06-03
CVE-2021-22334 [HIGH] CVE-2021-22334: There is an Improper Access Control vulnerability in Huawei Smartphone. Successful exploitation of t There is an Improper Access Control vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may cause app redirections.
nvd
CVE-2024-54099P4HIGHCVSS 7.1v13.0.0v14.0.02024-12-12
CVE-2024-54099 [HIGH] CWE-552 CVE-2024-54099: File replacement vulnerability on some devices Impact: Successful exploitation of this vulnerability File replacement vulnerability on some devices Impact: Successful exploitation of this vulnerability will affect integrity and confidentiality.
nvd
CVE-2024-42033P4HIGHCVSS 7.1v12.0.0v13.0.0+1 more2024-08-08
CVE-2024-42033 [HIGH] CWE-284 CVE-2024-42033: Access control vulnerability in the security verification module mpact: Successful exploitation of t Access control vulnerability in the security verification module mpact: Successful exploitation of this vulnerability will affect integrity and confidentiality.
nvd
CVE-2023-52542P4MEDIUMCVSS 6.5v12.0.0v13.0.02024-04-08
CVE-2023-52542 [MEDIUM] CWE-281 CVE-2023-52542: Permission verification vulnerability in the system module. Impact: Successful exploitation of this Permission verification vulnerability in the system module. Impact: Successful exploitation of this vulnerability will affect availability.
nvd
CVE-2022-48291P4MEDIUMCVSS 6.5v11.0.1v12.0.0+2 more2023-03-27
CVE-2022-48291 [MEDIUM] CWE-306 CVE-2022-48291: The Bluetooth module has an authentication bypass vulnerability in the pairing process. Successful e The Bluetooth module has an authentication bypass vulnerability in the pairing process. Successful exploitation of this vulnerability may affect confidentiality.
nvd
CVE-2022-48358P4HIGHCVSS 7.4v13.0.02023-03-27
CVE-2022-48358 [HIGH] CWE-601 CVE-2022-48358: The BatteryHealthActivity has a redirection vulnerability. Successful exploitation of this vulnerabi The BatteryHealthActivity has a redirection vulnerability. Successful exploitation of this vulnerability by a malicious app can cause service exceptions.
nvd
CVE-2022-41577P4HIGHCVSS 7.1v12.0.02022-10-14
CVE-2022-41577 [HIGH] CWE-125 CVE-2022-41577: The kernel server has a vulnerability of not verifying the length of the data transferred in the use The kernel server has a vulnerability of not verifying the length of the data transferred in the user space.Successful exploitation of this vulnerability may cause out-of-bounds read in the kernel, which affects the device confidentiality and availability.
nvd
CVE-2026-34854P4HIGHCVSS 7.1v14.0.0v14.2.0+1 more2026-04-13
CVE-2026-34854 [HIGH] CWE-416 CVE-2026-34854: UAF vulnerability in the kernel module. Impact: Successful exploitation of this vulnerability will a UAF vulnerability in the kernel module. Impact: Successful exploitation of this vulnerability will affect availability and confidentiality.
nvd
CVE-2025-58314P4HIGHCVSS 7.1v12.0.0v13.0.0+3 more2025-11-28
CVE-2025-58314 [HIGH] CWE-125 CVE-2025-58314: Vulnerability of accessing invalid memory in the component driver module. Impact: Successful exploit Vulnerability of accessing invalid memory in the component driver module. Impact: Successful exploitation of this vulnerability will affect availability and confidentiality.
nvd
CVE-2021-22386P4HIGHCVSS 7.0v11.0.02021-08-10
CVE-2021-22386 [HIGH] CWE-415 CVE-2021-22386: A component of the Huawei smartphone has a Double Free vulnerability. Local attackers may exploit th A component of the Huawei smartphone has a Double Free vulnerability. Local attackers may exploit this vulnerability to cause Root Elevation of Privileges.
nvd
CVE-2026-41970P4MEDIUMCVSS 6.8v15.0.0v14.2.0+2 more2026-05-15
CVE-2026-41970 [MEDIUM] CWE-787 CVE-2026-41970: Out-of-bounds write vulnerability in the distributed file system module. Impact: Successful exploita Out-of-bounds write vulnerability in the distributed file system module. Impact: Successful exploitation of this vulnerability may affect availability.
nvd
CVE-2024-39672P4HIGHCVSS 7.1v14.0.02024-07-25
CVE-2024-39672 [HIGH] CWE-416 CVE-2024-39672: Memory request logic vulnerability in the memory module. Impact: Successful exploitation of this vul Memory request logic vulnerability in the memory module. Impact: Successful exploitation of this vulnerability will affect integrity and availability.
nvd
CVE-2025-58311P4HIGHCVSS 7.1v14.0.0v14.2.0+1 more2025-11-28
CVE-2025-58311 [HIGH] CWE-416 CVE-2025-58311: UAF vulnerability in the USB driver module. Impact: Successful exploitation of this vulnerability wi UAF vulnerability in the USB driver module. Impact: Successful exploitation of this vulnerability will affect availability and confidentiality.
nvd
CVE-2026-34859P4HIGHCVSS 7.1v14.2.0v15.0.02026-04-13
CVE-2026-34859 [HIGH] CWE-416 CVE-2026-34859: UAF vulnerability in the kernel module. Impact: Successful exploitation of this vulnerability will a UAF vulnerability in the kernel module. Impact: Successful exploitation of this vulnerability will affect availability and confidentiality.
nvd
CVE-2021-22437P4HIGHCVSS 7.0v10.1.0v10.1.12022-02-25
CVE-2021-22437 [HIGH] CWE-190 CVE-2021-22437: There is a software integer overflow leading to a TOCTOU condition in smartphones. Successful exploi There is a software integer overflow leading to a TOCTOU condition in smartphones. Successful exploitation of this vulnerability may cause random address access.
nvd
CVE-2026-58554P4MEDIUMCVSS 6.6v15.0.0v14.2.0+1 more2026-07-15
CVE-2026-58554 [MEDIUM] CWE-200 CVE-2026-58554: Permission control vulnerability in the Settings module. Impact: Successful exploitation of this vul Permission control vulnerability in the Settings module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
nvd
CVE-2024-39673P4HIGHCVSS 7.1v12.0.0v13.0.0+1 more2024-07-25
CVE-2024-39673 [HIGH] CWE-502 CVE-2024-39673: Vulnerability of serialisation/deserialisation mismatch in the iAware module. Impact: Successful exp Vulnerability of serialisation/deserialisation mismatch in the iAware module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
nvd
CVE-2021-22316P4MEDIUMCVSS 6.8v10.1.1v11.0.0+1 more2021-06-03
CVE-2021-22316 [MEDIUM] CWE-306 CVE-2021-22316: There is a Missing Authentication for Critical Function vulnerability in Huawei Smartphone. Attacker There is a Missing Authentication for Critical Function vulnerability in Huawei Smartphone. Attackers with physical access to the device can thereby exploit this vulnerability. A successful exploitation of this vulnerability can compromise the device's data security and functional availability.
nvd
CVE-2026-41976P4MEDIUMCVSS 6.6v15.0.02026-06-09
CVE-2026-41976 [MEDIUM] CWE-275 CVE-2026-41976: Permission control vulnerability in the audio framework. Impact: Successful exploitation of this vul Permission control vulnerability in the audio framework. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
nvd
Huawei Emui vulnerabilities | cvebase