Huawei Harmonyos vulnerabilities
1,111 known vulnerabilities affecting huawei/harmonyos.
Total CVEs
1,111
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL138HIGH539MEDIUM394LOW40
Vulnerabilities
Page 31 of 56
CVE-2021-46885P3HIGHCVSS 7.5v2.1.0v2.0.1+1 more2023-05-26
CVE-2021-46885 [HIGH] CWE-120 CVE-2021-46885: The video framework has memory overwriting caused by addition overflow. Successful exploitation of t
The video framework has memory overwriting caused by addition overflow. Successful exploitation of this vulnerability may affect availability.
nvd
CVE-2022-46314P3HIGHCVSS 7.5fixed in 3.0.0v3.0.02022-12-20
CVE-2022-46314 [HIGH] CWE-404 CVE-2022-46314: The IPC module has defects introduced in the design process. Successful exploitation of this vulnera
The IPC module has defects introduced in the design process. Successful exploitation of this vulnerability may affect system availability.
nvd
CVE-2023-39396P3HIGHCVSS 7.5v3.0.0v3.1.02023-08-13
CVE-2023-39396 [HIGH] CWE-125 CVE-2023-39396: Deserialization vulnerability in the input module. Successful exploitation of this vulnerability may
Deserialization vulnerability in the input module. Successful exploitation of this vulnerability may affect availability.
nvd
CVE-2023-52113P3HIGHCVSS 7.5v2.0.0v2.1.0+3 more2024-01-16
CVE-2023-52113 [HIGH] CWE-400 CVE-2023-52113: launchAnyWhere vulnerability in the ActivityManagerService module. Successful exploitation of this v
launchAnyWhere vulnerability in the ActivityManagerService module. Successful exploitation of this vulnerability will affect availability.
nvd
CVE-2023-39382P3HIGHCVSS 7.5v2.0.0v2.0.1+3 more2023-08-13
CVE-2023-39382 [HIGH] CWE-20 CVE-2023-39382: Input verification vulnerability in the audio module. Successful exploitation of this vulnerability
Input verification vulnerability in the audio module. Successful exploitation of this vulnerability may cause virtual machines (VMs) to restart.
nvd
CVE-2023-39389P3HIGHCVSS 7.5v2.0.0v2.0.1+3 more2023-08-13
CVE-2023-39389 [HIGH] CWE-120 CVE-2023-39389: Vulnerability of input parameters being not strictly verified in the PMS module. Successful exploita
Vulnerability of input parameters being not strictly verified in the PMS module. Successful exploitation of this vulnerability may cause home screen unavailability.
nvd
CVE-2023-39388P3HIGHCVSS 7.5v2.0.0v2.0.1+3 more2023-08-13
CVE-2023-39388 [HIGH] CWE-120 CVE-2023-39388: Vulnerability of input parameters being not strictly verified in the PMS module. Successful exploita
Vulnerability of input parameters being not strictly verified in the PMS module. Successful exploitation of this vulnerability may cause home screen unavailability.
nvd
CVE-2023-39386P3HIGHCVSS 7.5v3.0.0v3.1.02023-08-13
CVE-2023-39386 [HIGH] CWE-120 CVE-2023-39386: Vulnerability of input parameters being not strictly verified in the PMS module. Successful exploita
Vulnerability of input parameters being not strictly verified in the PMS module. Successful exploitation of this vulnerability may cause newly installed apps to fail to restart.
nvd
CVE-2023-41300P3HIGHCVSS 7.5v2.0.0v2.0.1+3 more2023-09-25
CVE-2023-41300 [HIGH] CWE-20 CVE-2023-41300: Vulnerability of parameters not being strictly verified in the PMS module. Successful exploitation o
Vulnerability of parameters not being strictly verified in the PMS module. Successful exploitation of this vulnerability may cause the system to restart.
nvd
CVE-2023-52545P3HIGHCVSS 7.5v3.0.0v3.1.0+1 more2024-04-08
CVE-2023-52545 [HIGH] CWE-276 CVE-2023-52545: Vulnerability of undefined permissions in the Calendar app. Impact: Successful exploitation of this
Vulnerability of undefined permissions in the Calendar app.
Impact: Successful exploitation of this vulnerability will affect availability.
nvd
CVE-2023-39384P3HIGHCVSS 7.5v2.0.1v3.0.0+3 more2023-08-13
CVE-2023-39384 [HIGH] CWE-264 CVE-2023-39384: Vulnerability of incomplete permission verification in the input method module. Successful exploitat
Vulnerability of incomplete permission verification in the input method module. Successful exploitation of this vulnerability may cause features to perform abnormally.
nvd
CVE-2024-54115P3HIGHCVSS 7.5v5.0.02024-12-12
CVE-2024-54115 [HIGH] CWE-754 CVE-2024-54115: Out-of-bounds read vulnerability in the DASH module Impact: Successful exploitation of this vulnerab
Out-of-bounds read vulnerability in the DASH module
Impact: Successful exploitation of this vulnerability will affect availability.
nvd
CVE-2024-57956P3HIGHCVSS 7.5v5.0.02025-02-06
CVE-2024-57956 [HIGH] CWE-680 CVE-2024-57956: Out-of-bounds read vulnerability in the interpreter string module Impact: Successful exploitation of
Out-of-bounds read vulnerability in the interpreter string module
Impact: Successful exploitation of this vulnerability may affect availability.
nvd
CVE-2024-56438P3HIGHCVSS 7.5v3.1.0v4.0.0+1 more2025-01-08
CVE-2024-56438 [HIGH] CWE-119 CVE-2024-56438: Vulnerability of improper memory address protection in the HUKS module Impact: Successful exploitati
Vulnerability of improper memory address protection in the HUKS module
Impact: Successful exploitation of this vulnerability may affect availability.
nvd
CVE-2024-56442P3HIGHCVSS 7.5v2.0.0v2.1.0+2 more2025-01-08
CVE-2024-56442 [HIGH] CWE-227 CVE-2024-56442: Vulnerability of native APIs not being implemented in the NFC service module Impact: Successful expl
Vulnerability of native APIs not being implemented in the NFC service module
Impact: Successful exploitation of this vulnerability may cause features to perform abnormally.
nvd
CVE-2024-57962P3HIGHCVSS 7.5v5.0.02025-02-06
CVE-2024-57962 [HIGH] CWE-701 CVE-2024-57962: Vulnerability of incomplete verification information in the VPN service module Impact: Successful ex
Vulnerability of incomplete verification information in the VPN service module
Impact: Successful exploitation of this vulnerability may affect availability.
nvd
CVE-2021-22319P4HIGHCVSS 7.5v2.02022-02-25
CVE-2021-22319 [HIGH] CWE-190 CVE-2021-22319: There is an improper verification vulnerability in smartphones. Successful exploitation of this vuln
There is an improper verification vulnerability in smartphones. Successful exploitation of this vulnerability may cause integer overflows.
nvd
CVE-2021-37111P3HIGHCVSS 7.5fixed in 2.02022-01-03
CVE-2021-37111 [HIGH] CWE-770 CVE-2021-37111: There is a Memory leakage vulnerability in Smartphone.Successful exploitation of this vulnerability
There is a Memory leakage vulnerability in Smartphone.Successful exploitation of this vulnerability may cause memory exhaustion.
nvd
CVE-2021-37119P4HIGHCVSS 7.5fixed in 2.02022-01-03
CVE-2021-37119 [HIGH] CVE-2021-37119: There is a Service logic vulnerability in Smartphone.Successful exploitation of this vulnerability m
There is a Service logic vulnerability in Smartphone.Successful exploitation of this vulnerability may cause WLAN DoS.
nvd
CVE-2021-37117P4HIGHCVSS 7.5fixed in 2.02022-01-03
CVE-2021-37117 [HIGH] CVE-2021-37117: There is a Service logic vulnerability in Smartphone.Successful exploitation of this vulnerability m
There is a Service logic vulnerability in Smartphone.Successful exploitation of this vulnerability may cause WLAN DoS.
nvd