Huawei Harmonyos vulnerabilities
1,111 known vulnerabilities affecting huawei/harmonyos.
Total CVEs
1,111
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL138HIGH539MEDIUM394LOW40
Vulnerabilities
Page 51 of 56
CVE-2025-66333P4MEDIUMCVSS 5.5v5.0.1v5.1.0+1 more2025-12-08
CVE-2025-66333 [MEDIUM] CWE-494 CVE-2025-66333: Denial of service (DoS) vulnerability in the office service. Impact: Successful exploitation of this
Denial of service (DoS) vulnerability in the office service. Impact: Successful exploitation of this vulnerability may affect availability.
nvd
CVE-2025-66331P4MEDIUMCVSS 5.5v5.0.1v5.1.0+1 more2025-12-08
CVE-2025-66331 [MEDIUM] CWE-494 CVE-2025-66331: Denial of service (DoS) vulnerability in the office service. Impact: Successful exploitation of this
Denial of service (DoS) vulnerability in the office service. Impact: Successful exploitation of this vulnerability may affect availability.
nvd
CVE-2025-66334P4MEDIUMCVSS 5.5v5.0.1v5.1.0+1 more2025-12-08
CVE-2025-66334 [MEDIUM] CWE-494 CVE-2025-66334: Denial of service (DoS) vulnerability in the office service. Impact: Successful exploitation of this
Denial of service (DoS) vulnerability in the office service. Impact: Successful exploitation of this vulnerability may affect availability.
nvd
CVE-2022-31758P4MEDIUMCVSS 4.7v2.02022-06-13
CVE-2022-31758 [MEDIUM] CWE-362 CVE-2022-31758: The kernel module has the race condition vulnerability. Successful exploitation of this vulnerabilit
The kernel module has the race condition vulnerability. Successful exploitation of this vulnerability may affect data confidentiality.
nvd
CVE-2025-54629P4MEDIUMCVSS 4.7v4.0.0v4.2.0+4 more2025-08-06
CVE-2025-54629 [MEDIUM] CWE-362 CVE-2025-54629: Race condition issue occurring in the physical page import process of the memory management module.
Race condition issue occurring in the physical page import process of the memory management module.
Impact: Successful exploitation of this vulnerability may affect service integrity.
nvd
CVE-2025-54651P4MEDIUMCVSS 4.7v5.0.1v5.1.02025-08-06
CVE-2025-54651 [MEDIUM] CWE-362 CVE-2025-54651: Race condition vulnerability in the kernel hufs module. Impact: Successful exploitation of this vuln
Race condition vulnerability in the kernel hufs module.
Impact: Successful exploitation of this vulnerability may affect service confidentiality.
nvd
CVE-2023-52544P4MEDIUMCVSS 4.3v2.0.0v2.1.0+3 more2024-04-08
CVE-2023-52544 [MEDIUM] CWE-22 CVE-2023-52544: Vulnerability of file path verification being bypassed in the email module. Impact: Successful explo
Vulnerability of file path verification being bypassed in the email module.
Impact: Successful exploitation of this vulnerability may affect service confidentiality.
nvd
CVE-2022-31751P4MEDIUMCVSS 5.5v2.02022-06-13
CVE-2022-31751 [MEDIUM] CVE-2022-31751: The kernel emcom module has multi-thread contention. Successful exploitation of this vulnerability m
The kernel emcom module has multi-thread contention. Successful exploitation of this vulnerability may affect system availability.
nvd
CVE-2024-32995P4MEDIUMCVSS 5.5v2.0.0v2.1.0+4 more2024-05-14
CVE-2024-32995 [MEDIUM] CWE-248 CVE-2024-32995: Denial of service (DoS) vulnerability in the AMS module Impact: Successful exploitation of this vuln
Denial of service (DoS) vulnerability in the AMS module
Impact: Successful exploitation of this vulnerability will affect availability.
nvd
CVE-2022-31759P4MEDIUMCVSS 5.5v2.02022-06-13
CVE-2022-31759 [MEDIUM] CWE-824 CVE-2022-31759: AppLink has a vulnerability of accessing uninitialized pointers. Successful exploitation of this vul
AppLink has a vulnerability of accessing uninitialized pointers. Successful exploitation of this vulnerability may affect system availability.
nvd
CVE-2021-22459P4MEDIUMCVSS 5.5v2.02021-10-28
CVE-2021-22459 [MEDIUM] CWE-476 CVE-2021-22459: A component of the HarmonyOS has a NULL Pointer Dereference vulnerability. Local attackers may explo
A component of the HarmonyOS has a NULL Pointer Dereference vulnerability. Local attackers may exploit this vulnerability to cause System functions which are unavailable.
nvd
CVE-2021-22295P4MEDIUMCVSS 5.5v2.02021-08-06
CVE-2021-22295 [MEDIUM] CWE-276 CVE-2021-22295: A component of the HarmonyOS has a permission bypass vulnerability. Local attackers may exploit this
A component of the HarmonyOS has a permission bypass vulnerability. Local attackers may exploit this vulnerability to cause the device to hang due to the page error OsVmPageFaultHandler.
nvd
CVE-2024-54101P4MEDIUMCVSS 5.5v2.0.0v2.1.0+4 more2024-12-12
CVE-2024-54101 [MEDIUM] CWE-20 CVE-2024-54101: Denial of service (DoS) vulnerability in the installation module Impact: Successful exploitation of
Denial of service (DoS) vulnerability in the installation module
Impact: Successful exploitation of this vulnerability will affect availability.
nvd
CVE-2024-51514P4MEDIUMCVSS 5.5v5.0.02024-11-05
CVE-2024-51514 [MEDIUM] CWE-20 CVE-2024-51514: Vulnerability of pop-up windows belonging to no app in the VPN module Impact: Successful exploitati
Vulnerability of pop-up windows belonging to no app in the VPN module
Impact: Successful exploitation of this vulnerability may affect service confidentiality.
nvd
CVE-2025-58289P4MEDIUMCVSS 5.5v5.0.1v5.1.02025-10-11
CVE-2025-58289 [MEDIUM] CWE-840 CVE-2025-58289: Vulnerability of improper exception handling in the print module. Successful exploitation of this vu
Vulnerability of improper exception handling in the print module. Successful exploitation of this vulnerability may affect availability.
nvd
CVE-2025-58293P4MEDIUMCVSS 5.5v5.0.1v5.1.02025-10-11
CVE-2025-58293 [MEDIUM] CWE-264 CVE-2025-58293: Vulnerability of improper exception handling in the print module. Successful exploitation of this vu
Vulnerability of improper exception handling in the print module. Successful exploitation of this vulnerability may affect availability.
nvd
CVE-2026-41977P4MEDIUMCVSS 5.0v4.3.1v4.3.0+2 more2026-06-09
CVE-2026-41977 [MEDIUM] CWE-190 CVE-2026-41977: DoS vulnerability in the log service. Impact: Successful exploitation of this vulnerability may affe
DoS vulnerability in the log service. Impact: Successful exploitation of this vulnerability may affect availability.
nvd
CVE-2025-53173P4MEDIUMCVSS 4.3v5.0.1v5.1.02025-07-07
CVE-2025-53173 [MEDIUM] CWE-121 CVE-2025-53173: Stack overflow risk when vector images are parsed during file preview Impact: Successful exploitatio
Stack overflow risk when vector images are parsed during file preview
Impact: Successful exploitation of this vulnerability may affect the file preview function.
nvd
CVE-2026-41983P4MEDIUMCVSS 4.3v6.1.0v6.0.02026-06-09
CVE-2026-41983 [MEDIUM] CWE-399 CVE-2026-41983: DoS vulnerability in the browser kernel. Impact: Successful exploitation of this vulnerability may a
DoS vulnerability in the browser kernel. Impact: Successful exploitation of this vulnerability may affect availability.
nvd
CVE-2021-22441P4MEDIUMCVSS 5.5fixed in 2.0v2.02022-02-25
CVE-2021-22441 [MEDIUM] CWE-190 CVE-2021-22441: Some Huawei products have an integer overflow vulnerability. Successful exploitation of this vulnera
Some Huawei products have an integer overflow vulnerability. Successful exploitation of this vulnerability may lead to kernel crash.
nvd