Huawei Magic Ui vulnerabilities

276 known vulnerabilities affecting huawei/magic_ui.

Total CVEs
276
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL64HIGH164MEDIUM46LOW2

Vulnerabilities

Page 1 of 14
CVE-2022-39002CRITICALCVSS 9.8v4.0.02022-09-16
CVE-2022-39002 [CRITICAL] CWE-415 CVE-2022-39002: Double free vulnerability in the storage module. Successful exploitation of this vulnerability will Double free vulnerability in the storage module. Successful exploitation of this vulnerability will cause the memory to be freed twice.
nvd
CVE-2022-39003CRITICALCVSS 9.1v4.0.02022-09-16
CVE-2022-39003 [CRITICAL] CWE-120 CVE-2022-39003: Buffer overflow vulnerability in the video framework. Successful exploitation of this vulnerability Buffer overflow vulnerability in the video framework. Successful exploitation of this vulnerability will affect the confidentiality and integrity of trusted components.
cvelistv5nvd
CVE-2021-40019CRITICALCVSS 9.1v3.1.0v3.1.12022-09-16
CVE-2021-40019 [CRITICAL] CWE-125 CVE-2021-40019: Out-of-bounds heap read vulnerability in the HW_KEYMASTER module. Successful exploitation of this vu Out-of-bounds heap read vulnerability in the HW_KEYMASTER module. Successful exploitation of this vulnerability may cause out-of-bounds access.
nvd
CVE-2022-39000CRITICALCVSS 9.8v4.0.02022-09-16
CVE-2022-39000 [CRITICAL] CVE-2022-39000: The iAware module has a vulnerability in managing malicious apps.Successful exploitation of this vul The iAware module has a vulnerability in managing malicious apps.Successful exploitation of this vulnerability will cause malicious apps to automatically start upon system startup.
cvelistv5nvd
CVE-2022-39005HIGHCVSS 7.5v4.0.02022-09-16
CVE-2022-39005 [HIGH] CWE-401 CVE-2022-39005: The MPTCP module has the memory leak vulnerability. Successful exploitation of this vulnerability ca The MPTCP module has the memory leak vulnerability. Successful exploitation of this vulnerability can cause memory leaks.
cvelistv5nvd
CVE-2022-38979HIGHCVSS 7.5v3.1.0v3.1.1+1 more2022-09-16
CVE-2022-38979 [HIGH] CVE-2022-38979: The secure OS module has configuration defects. Successful exploitation of this vulnerability may af The secure OS module has configuration defects. Successful exploitation of this vulnerability may affect data confidentiality.
cvelistv5nvd
CVE-2022-39001HIGHCVSS 7.5v4.0.02022-09-16
CVE-2022-39001 [HIGH] CWE-22 CVE-2022-39001: The number identification module has a path traversal vulnerability. Successful exploitation of this The number identification module has a path traversal vulnerability. Successful exploitation of this vulnerability may cause data disclosure.
cvelistv5nvd
CVE-2022-38987HIGHCVSS 7.5v3.1.0v3.1.12022-09-16
CVE-2022-38987 [HIGH] CVE-2022-38987: The secure OS module has configuration defects. Successful exploitation of this vulnerability may af The secure OS module has configuration defects. Successful exploitation of this vulnerability may affect system availability.
nvd
CVE-2022-38997HIGHCVSS 7.5v3.1.0v3.1.1+1 more2022-09-16
CVE-2022-38997 [HIGH] CVE-2022-38997: The secure OS module has configuration defects. Successful exploitation of this vulnerability may af The secure OS module has configuration defects. Successful exploitation of this vulnerability may affect data confidentiality.
cvelistv5nvd
CVE-2022-38993HIGHCVSS 7.5v3.1.0v3.1.12022-09-16
CVE-2022-38993 [HIGH] CVE-2022-38993: The secure OS module has configuration defects. Successful exploitation of this vulnerability may af The secure OS module has configuration defects. Successful exploitation of this vulnerability may affect system availability.
nvd
CVE-2020-36601HIGHCVSS 7.5v3.1.02022-09-16
CVE-2020-36601 [HIGH] CWE-787 CVE-2020-36601: Out-of-bounds write vulnerability in the kernel modules. Successful exploitation of this vulnerabili Out-of-bounds write vulnerability in the kernel modules. Successful exploitation of this vulnerability may cause a panic reboot.
cvelistv5nvd
CVE-2022-39004HIGHCVSS 7.5v4.0.02022-09-16
CVE-2022-39004 [HIGH] CWE-401 CVE-2022-39004: The MPTCP module has the memory leak vulnerability. Successful exploitation of this vulnerability ca The MPTCP module has the memory leak vulnerability. Successful exploitation of this vulnerability can cause memory leaks.
cvelistv5nvd
CVE-2022-38992HIGHCVSS 7.5v3.1.0v3.1.12022-09-16
CVE-2022-38992 [HIGH] CVE-2022-38992: The secure OS module has configuration defects. Successful exploitation of this vulnerability may af The secure OS module has configuration defects. Successful exploitation of this vulnerability may affect data confidentiality.
nvd
CVE-2022-38990HIGHCVSS 7.5v3.1.0v3.1.12022-09-16
CVE-2022-38990 [HIGH] CVE-2022-38990: The secure OS module has configuration defects. Successful exploitation of this vulnerability may af The secure OS module has configuration defects. Successful exploitation of this vulnerability may affect system availability.
nvd
CVE-2022-38989HIGHCVSS 7.5v3.1.0v3.1.12022-09-16
CVE-2022-38989 [HIGH] CVE-2022-38989: The secure OS module has configuration defects. Successful exploitation of this vulnerability may af The secure OS module has configuration defects. Successful exploitation of this vulnerability may affect system availability.
nvd
CVE-2022-38978HIGHCVSS 7.5v3.1.0v3.1.1+1 more2022-09-16
CVE-2022-38978 [HIGH] CVE-2022-38978: The secure OS module has configuration defects. Successful exploitation of this vulnerability may af The secure OS module has configuration defects. Successful exploitation of this vulnerability may affect data confidentiality.
cvelistv5nvd
CVE-2022-38991HIGHCVSS 7.5v3.1.0v3.1.12022-09-16
CVE-2022-38991 [HIGH] CVE-2022-38991: The secure OS module has configuration defects. Successful exploitation of this vulnerability may af The secure OS module has configuration defects. Successful exploitation of this vulnerability may affect data confidentiality.
nvd
CVE-2020-36600HIGHCVSS 7.5v3.0.0v3.1.0+2 more2022-09-16
CVE-2020-36600 [HIGH] CWE-787 CVE-2020-36600: Out-of-bounds write vulnerability in the power consumption module. Successful exploitation of this v Out-of-bounds write vulnerability in the power consumption module. Successful exploitation of this vulnerability may cause the system to restart.
cvelistv5nvd
CVE-2022-38988HIGHCVSS 7.5v3.1.0v3.1.12022-09-16
CVE-2022-38988 [HIGH] CVE-2022-38988: The secure OS module has configuration defects. Successful exploitation of this vulnerability may af The secure OS module has configuration defects. Successful exploitation of this vulnerability may affect data confidentiality.
nvd
CVE-2022-39006MEDIUMCVSS 5.9v4.0.02022-09-16
CVE-2022-39006 [MEDIUM] CWE-362 CVE-2022-39006: The MPTCP module has the race condition vulnerability. Successful exploitation of this vulnerability The MPTCP module has the race condition vulnerability. Successful exploitation of this vulnerability may cause the device to restart.
cvelistv5nvd
1 / 14Next →