Magic UI
by Huawei
CVEs (276)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2020-9142 | Cri | 0.59 | 9.1 | 0.01 | Jan 13, 2021 | There is a heap base buffer overflow vulnerability in some Huawei smartphone.Successful exploitation of this vulnerability can cause heap overflow and memory overwriting when the system incorrectly processes the update file. | ||
| CVE-2020-9141 | Cri | 0.59 | 9.1 | 0.00 | Jan 13, 2021 | There is a improper privilege management vulnerability in some Huawei smartphone. Successful exploitation of this vulnerability can cause information disclosure and malfunctions due to insufficient verification of data authenticity. | ||
| CVE-2020-9139 | Cri | 0.59 | 9.1 | 0.01 | Jan 13, 2021 | There is a improper input validation vulnerability in some Huawei Smartphone.Successful exploit of this vulnerability can cause memory access errors and denial of service. | ||
| CVE-2020-9145 | Cri | 0.59 | 9.1 | 0.01 | Jan 13, 2021 | There is an Out-of-bounds Write vulnerability in some Huawei smartphone. Successful exploitation of this vulnerability may cause out-of-bounds access to the physical memory. | ||
| CVE-2021-40044 | Hig | 0.57 | 8.8 | 0.00 | Feb 9, 2022 | There is a permission verification vulnerability in the Bluetooth module.Successful exploitation of this vulnerability may cause unauthorized operations. | ||
| CVE-2021-37074 | Hig | 0.53 | 8.1 | 0.01 | Dec 8, 2021 | There is a Race Condition vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to the user root privilege escalation. | ||
| CVE-2021-22428 | Hig | 0.53 | 8.1 | 0.01 | Aug 2, 2021 | There is an Incomplete Cleanup Vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to authentication bypass. | ||
| CVE-2021-22427 | Hig | 0.53 | 8.1 | 0.01 | Aug 2, 2021 | There is a Heap-based Buffer Overflow Vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to authentication bypass. | ||
| CVE-2021-22384 | Hig | 0.53 | 8.1 | 0.01 | Aug 2, 2021 | There is an Information Disclosure Vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to authentication bypass. | ||
| CVE-2021-22351 | Hig | 0.53 | 8.1 | 0.01 | Jun 30, 2021 | There is a Credentials Management Errors Vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may induce users to grant permissions on modifying items in the configuration table,causing system exceptions. | ||
| CVE-2021-22369 | Hig | 0.53 | 8.1 | 0.01 | Jun 30, 2021 | There is a Time-of-check Time-of-use (TOCTOU) Race Condition Vulnerability in Huawei Smartphone. Successful exploitation of these vulnerabilities may escalate the permission to that of the root user. | ||
| CVE-2022-31762 | Hig | 0.51 | 7.8 | 0.00 | Jun 13, 2022 | The AMS module has a vulnerability in input validation. Successful exploitation of this vulnerability may cause privilege escalation. | ||
| CVE-2021-36999 | Hig | 0.51 | 7.8 | 0.01 | Oct 28, 2021 | There is a Buffer overflow vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability by sending malicious images and inducing users to open the images may cause remote code execution. | ||
| CVE-2021-22385 | Hig | 0.51 | 7.8 | 0.00 | Aug 10, 2021 | A component of the Huawei smartphone has a External Control of System or Configuration Setting vulnerability. Local attackers may exploit this vulnerability to cause Kernel Code Execution. | ||
| CVE-2021-22352 | Hig | 0.51 | 7.8 | 0.00 | Jun 30, 2021 | There is a Configuration Defect Vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may allow attackers to hijack the device and forge UIs to induce users to execute malicious commands. | ||
| CVE-2021-22335 | Hig | 0.51 | 7.8 | 0.00 | Jun 3, 2021 | There is a Memory Buffer Improper Operation Limit vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may cause exceptions in image processing. | ||
| CVE-2020-9147 | Hig | 0.51 | 7.8 | 0.00 | Apr 1, 2021 | A memory buffer error vulnerability exists in a component interface of Huawei Smartphone. Local attackers may exploit this vulnerability by carefully constructing attack scenarios to cause out-of-bounds read. | ||
| CVE-2022-39005 | Hig | 0.49 | 7.5 | 0.01 | Sep 16, 2022 | The MPTCP module has the memory leak vulnerability. Successful exploitation of this vulnerability can cause memory leaks. | ||
| CVE-2022-39004 | Hig | 0.49 | 7.5 | 0.01 | Sep 16, 2022 | The MPTCP module has the memory leak vulnerability. Successful exploitation of this vulnerability can cause memory leaks. | ||
| CVE-2022-39001 | Hig | 0.49 | 7.5 | 0.01 | Sep 16, 2022 | The number identification module has a path traversal vulnerability. Successful exploitation of this vulnerability may cause data disclosure. |
- risk 0.59cvss 9.1epss 0.01
There is a heap base buffer overflow vulnerability in some Huawei smartphone.Successful exploitation of this vulnerability can cause heap overflow and memory overwriting when the system incorrectly processes the update file.
- risk 0.59cvss 9.1epss 0.00
There is a improper privilege management vulnerability in some Huawei smartphone. Successful exploitation of this vulnerability can cause information disclosure and malfunctions due to insufficient verification of data authenticity.
- risk 0.59cvss 9.1epss 0.01
There is a improper input validation vulnerability in some Huawei Smartphone.Successful exploit of this vulnerability can cause memory access errors and denial of service.
- risk 0.59cvss 9.1epss 0.01
There is an Out-of-bounds Write vulnerability in some Huawei smartphone. Successful exploitation of this vulnerability may cause out-of-bounds access to the physical memory.
- risk 0.57cvss 8.8epss 0.00
There is a permission verification vulnerability in the Bluetooth module.Successful exploitation of this vulnerability may cause unauthorized operations.
- risk 0.53cvss 8.1epss 0.01
There is a Race Condition vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to the user root privilege escalation.
- risk 0.53cvss 8.1epss 0.01
There is an Incomplete Cleanup Vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to authentication bypass.
- risk 0.53cvss 8.1epss 0.01
There is a Heap-based Buffer Overflow Vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to authentication bypass.
- risk 0.53cvss 8.1epss 0.01
There is an Information Disclosure Vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to authentication bypass.
- risk 0.53cvss 8.1epss 0.01
There is a Credentials Management Errors Vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may induce users to grant permissions on modifying items in the configuration table,causing system exceptions.
- risk 0.53cvss 8.1epss 0.01
There is a Time-of-check Time-of-use (TOCTOU) Race Condition Vulnerability in Huawei Smartphone. Successful exploitation of these vulnerabilities may escalate the permission to that of the root user.
- risk 0.51cvss 7.8epss 0.00
The AMS module has a vulnerability in input validation. Successful exploitation of this vulnerability may cause privilege escalation.
- risk 0.51cvss 7.8epss 0.01
There is a Buffer overflow vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability by sending malicious images and inducing users to open the images may cause remote code execution.
- risk 0.51cvss 7.8epss 0.00
A component of the Huawei smartphone has a External Control of System or Configuration Setting vulnerability. Local attackers may exploit this vulnerability to cause Kernel Code Execution.
- risk 0.51cvss 7.8epss 0.00
There is a Configuration Defect Vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may allow attackers to hijack the device and forge UIs to induce users to execute malicious commands.
- risk 0.51cvss 7.8epss 0.00
There is a Memory Buffer Improper Operation Limit vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may cause exceptions in image processing.
- risk 0.51cvss 7.8epss 0.00
A memory buffer error vulnerability exists in a component interface of Huawei Smartphone. Local attackers may exploit this vulnerability by carefully constructing attack scenarios to cause out-of-bounds read.
- risk 0.49cvss 7.5epss 0.01
The MPTCP module has the memory leak vulnerability. Successful exploitation of this vulnerability can cause memory leaks.
- risk 0.49cvss 7.5epss 0.01
The MPTCP module has the memory leak vulnerability. Successful exploitation of this vulnerability can cause memory leaks.
- risk 0.49cvss 7.5epss 0.01
The number identification module has a path traversal vulnerability. Successful exploitation of this vulnerability may cause data disclosure.
Page 4 of 14