Huawei Magic Ui vulnerabilities
276 known vulnerabilities affecting huawei/magic_ui.
Total CVEs
276
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL64HIGH164MEDIUM46LOW2
Vulnerabilities
Page 12 of 14
CVE-2021-37046P4HIGHCVSS 7.5v4.0.02021-12-07
CVE-2021-37046 [HIGH] CWE-401 CVE-2021-37046: There is a Memory leak vulnerability with the codec detection module in Huawei Smartphone.Successful
There is a Memory leak vulnerability with the codec detection module in Huawei Smartphone.Successful exploitation of this vulnerability may cause the device to restart due to memory exhaustion.
nvd
CVE-2021-22483P4HIGHCVSS 7.5v3.1.1v4.0.02021-10-28
CVE-2021-22483 [HIGH] CVE-2021-22483: There is a issue of IP address spoofing in Huawei Smartphone. Successful exploitation of this vulner
There is a issue of IP address spoofing in Huawei Smartphone. Successful exploitation of this vulnerability may cause DoS.
nvd
CVE-2021-36993P4HIGHCVSS 7.5v3.1.1v4.0.02021-10-28
CVE-2021-36993 [HIGH] CWE-401 CVE-2021-36993: There is a Memory leaks vulnerability in Huawei Smartphone.Successful exploitation of this vulnerabi
There is a Memory leaks vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may affect service availability.
nvd
CVE-2022-39005P4HIGHCVSS 7.5v4.0.02022-09-16
CVE-2022-39005 [HIGH] CWE-401 CVE-2022-39005: The MPTCP module has the memory leak vulnerability. Successful exploitation of this vulnerability ca
The MPTCP module has the memory leak vulnerability. Successful exploitation of this vulnerability can cause memory leaks.
nvd
CVE-2022-39004P4HIGHCVSS 7.5v4.0.02022-09-16
CVE-2022-39004 [HIGH] CWE-401 CVE-2022-39004: The MPTCP module has the memory leak vulnerability. Successful exploitation of this vulnerability ca
The MPTCP module has the memory leak vulnerability. Successful exploitation of this vulnerability can cause memory leaks.
nvd
CVE-2021-22334P4HIGHCVSS 7.4v3.1.1v4.0.02021-06-03
CVE-2021-22334 [HIGH] CVE-2021-22334: There is an Improper Access Control vulnerability in Huawei Smartphone. Successful exploitation of t
There is an Improper Access Control vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may cause app redirections.
nvd
CVE-2021-22386P4HIGHCVSS 7.0v4.0.02021-08-10
CVE-2021-22386 [HIGH] CWE-415 CVE-2021-22386: A component of the Huawei smartphone has a Double Free vulnerability. Local attackers may exploit th
A component of the Huawei smartphone has a Double Free vulnerability. Local attackers may exploit this vulnerability to cause Root Elevation of Privileges.
nvd
CVE-2021-22437P4HIGHCVSS 7.0v3.1.0v3.1.12022-02-25
CVE-2021-22437 [HIGH] CWE-190 CVE-2021-22437: There is a software integer overflow leading to a TOCTOU condition in smartphones. Successful exploi
There is a software integer overflow leading to a TOCTOU condition in smartphones. Successful exploitation of this vulnerability may cause random address access.
nvd
CVE-2021-22316P4MEDIUMCVSS 6.8v3.1.1v4.0.02021-06-03
CVE-2021-22316 [MEDIUM] CWE-306 CVE-2021-22316: There is a Missing Authentication for Critical Function vulnerability in Huawei Smartphone. Attacker
There is a Missing Authentication for Critical Function vulnerability in Huawei Smartphone. Attackers with physical access to the device can thereby exploit this vulnerability. A successful exploitation of this vulnerability can compromise the device's data security and functional availability.
nvd
CVE-2021-40055P4MEDIUMCVSS 5.9v3.0.0v3.1.0+2 more2022-03-10
CVE-2021-40055 [MEDIUM] CVE-2021-40055: There is a man-in-the-middle attack vulnerability during system update download in recovery mode. Su
There is a man-in-the-middle attack vulnerability during system update download in recovery mode. Successful exploitation of this vulnerability may affect integrity.
nvd
CVE-2022-34741P4MEDIUMCVSS 6.5v4.0.02022-07-12
CVE-2022-34741 [MEDIUM] CWE-120 CVE-2022-34741: The NFC module has a buffer overflow vulnerability. Successful exploitation of this vulnerability ma
The NFC module has a buffer overflow vulnerability. Successful exploitation of this vulnerability may cause exceptions in NFC card registration, deletion, and activation.
nvd
CVE-2022-34740P4MEDIUMCVSS 6.5v4.0.02022-07-12
CVE-2022-34740 [MEDIUM] CWE-120 CVE-2022-34740: The NFC module has a buffer overflow vulnerability. Successful exploitation of this vulnerability ma
The NFC module has a buffer overflow vulnerability. Successful exploitation of this vulnerability may cause exceptions in NFC card registration, deletion, and activation.
nvd
CVE-2021-40016P4MEDIUMCVSS 6.5v3.1.0v3.1.1+1 more2022-07-12
CVE-2021-40016 [MEDIUM] CVE-2021-40016: Improper permission control vulnerability in the Bluetooth module.Successful exploitation of this vu
Improper permission control vulnerability in the Bluetooth module.Successful exploitation of this vulnerability will affect confidentiality.
nvd
CVE-2021-40059P4MEDIUMCVSS 6.5v3.1.0v3.1.1+1 more2022-03-10
CVE-2021-40059 [MEDIUM] CWE-276 CVE-2021-40059: There is a permission control vulnerability in the Wi-Fi module. Successful exploitation of this vul
There is a permission control vulnerability in the Wi-Fi module. Successful exploitation of this vulnerability may affect confidentiality.
nvd
CVE-2021-40009P4MEDIUMCVSS 5.3v4.0.02022-01-10
CVE-2021-40009 [MEDIUM] CWE-787 CVE-2021-40009: There is an Out-of-bounds write vulnerability in the AOD module in smartphones. Successful exploitat
There is an Out-of-bounds write vulnerability in the AOD module in smartphones. Successful exploitation of this vulnerability may affect service integrity.
nvd
CVE-2021-40013P4MEDIUMCVSS 6.5v3.1.0v3.1.1+1 more2022-07-12
CVE-2021-40013 [MEDIUM] CVE-2021-40013: Improper permission control vulnerability in the Bluetooth module.Successful exploitation of this vu
Improper permission control vulnerability in the Bluetooth module.Successful exploitation of this vulnerability will affect integrity.
nvd
CVE-2022-39006P4MEDIUMCVSS 5.9v4.0.02022-09-16
CVE-2022-39006 [MEDIUM] CWE-362 CVE-2022-39006: The MPTCP module has the race condition vulnerability. Successful exploitation of this vulnerability
The MPTCP module has the race condition vulnerability. Successful exploitation of this vulnerability may cause the device to restart.
nvd
CVE-2020-9138P4MEDIUMCVSS 5.3v2.1.1v3.0.0+2 more2021-01-13
CVE-2020-9138 [MEDIUM] CWE-787 CVE-2020-9138: There is a heap-based buffer overflow vulnerability in some Huawei Smartphone, Successful exploit of
There is a heap-based buffer overflow vulnerability in some Huawei Smartphone, Successful exploit of this vulnerability can cause process exceptions during updating.
nvd
CVE-2020-9143P4MEDIUMCVSS 5.3v2.1.1v3.0.0+2 more2021-01-13
CVE-2020-9143 [MEDIUM] CWE-306 CVE-2020-9143: There is a missing authentication vulnerability in some Huawei smartphone.Successful exploitation of
There is a missing authentication vulnerability in some Huawei smartphone.Successful exploitation of this vulnerability may lead to low-sensitive information exposure.
nvd
CVE-2021-46811P4MEDIUMCVSS 5.3v3.1.0v3.1.1+1 more2022-06-13
CVE-2021-46811 [MEDIUM] CWE-276 CVE-2021-46811: HwSEServiceAPP has a vulnerability in permission management. Successful exploitation of this vulnera
HwSEServiceAPP has a vulnerability in permission management. Successful exploitation of this vulnerability may cause disclosure of the Card Production Life Cycle (CPLC) information.
nvd