Magic UI
by Huawei
CVEs (253)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2022-22256 | Hig | 0.49 | 7.5 | 0.01 | Apr 11, 2022 | The DFX module has an access control vulnerability.Successful exploitation of this vulnerability may affect data confidentiality. | ||
| CVE-2022-22254 | Hig | 0.49 | 7.5 | 0.01 | Apr 11, 2022 | A permission bypass vulnerability exists when the NFC CAs access the TEE.Successful exploitation of this vulnerability may affect data confidentiality. | ||
| CVE-2022-22253 | Hig | 0.49 | 7.5 | 0.00 | Apr 11, 2022 | The DFX module has a vulnerability of improper validation of integrity check values.Successful exploitation of this vulnerability may affect system stability. | ||
| CVE-2021-40065 | Hig | 0.49 | 7.5 | 0.01 | Apr 11, 2022 | The communication module has a service logic error vulnerability.Successful exploitation of this vulnerability may affect data confidentiality. | ||
| CVE-2021-40064 | Hig | 0.49 | 7.5 | 0.01 | Mar 10, 2022 | There is a heap-based buffer overflow vulnerability in system components. Successful exploitation of this vulnerability may affect system stability. | ||
| CVE-2021-40063 | Hig | 0.49 | 7.5 | 0.01 | Mar 10, 2022 | There is an improper access control vulnerability in the video module. Successful exploitation of this vulnerability may affect confidentiality. | ||
| CVE-2021-40062 | Hig | 0.49 | 7.5 | 0.01 | Mar 10, 2022 | There is a vulnerability of copying input buffer without checking its size in the video framework. Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2021-40061 | Hig | 0.49 | 7.5 | 0.01 | Mar 10, 2022 | There is a vulnerability of accessing resources using an incompatible type (type confusion) in the Bastet module. Successful exploitation of this vulnerability may affect integrity. | ||
| CVE-2021-40060 | Hig | 0.49 | 7.5 | 0.01 | Mar 10, 2022 | There is a heap-based buffer overflow vulnerability in the video framework. Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2021-40058 | Hig | 0.49 | 7.5 | 0.01 | Mar 10, 2022 | There is a heap-based buffer overflow vulnerability in the video framework. Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2021-40057 | Hig | 0.49 | 7.5 | 0.01 | Mar 10, 2022 | There is a heap-based and stack-based buffer overflow vulnerability in the video framework. Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2021-40056 | Hig | 0.49 | 7.5 | 0.01 | Mar 10, 2022 | There is a vulnerability of copying input buffer without checking its size in the video framework. Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2021-40054 | Hig | 0.49 | 7.5 | 0.01 | Mar 10, 2022 | There is an integer underflow vulnerability in the atcmdserver module. Successful exploitation of this vulnerability may affect integrity. | ||
| CVE-2021-40052 | Hig | 0.49 | 7.5 | 0.01 | Mar 10, 2022 | There is an incorrect buffer size calculation vulnerability in the video framework.Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2021-40051 | Hig | 0.49 | 7.5 | 0.01 | Mar 10, 2022 | There is an unauthorized access vulnerability in system components. Successful exploitation of this vulnerability will affect confidentiality. | ||
| CVE-2021-40049 | Hig | 0.49 | 7.5 | 0.01 | Mar 10, 2022 | There is a permission control vulnerability in the PMS module. Successful exploitation of this vulnerability can lead to sensitive system information being obtained without authorization. | ||
| CVE-2021-40048 | Hig | 0.49 | 7.5 | 0.01 | Mar 10, 2022 | There is an incorrect buffer size calculation vulnerability in the video framework. Successful exploitation of this vulnerability will affect availability. | ||
| CVE-2021-40047 | Hig | 0.49 | 7.5 | 0.01 | Mar 10, 2022 | There is a vulnerability of memory not being released after effective lifetime in the Bastet module. Successful exploitation of this vulnerability may affect integrity. | ||
| CVE-2021-37027 | Hig | 0.49 | 7.5 | 0.01 | Feb 25, 2022 | There is a DoS vulnerability in smartphones. Successful exploitation of this vulnerability may affect service integrity. | ||
| CVE-2021-22489 | Hig | 0.49 | 7.5 | 0.01 | Feb 25, 2022 | There is a DoS vulnerability in smartphones. Successful exploitation of this vulnerability may affect service availability. |
- risk 0.49cvss 7.5epss 0.01
The DFX module has an access control vulnerability.Successful exploitation of this vulnerability may affect data confidentiality.
- risk 0.49cvss 7.5epss 0.01
A permission bypass vulnerability exists when the NFC CAs access the TEE.Successful exploitation of this vulnerability may affect data confidentiality.
- risk 0.49cvss 7.5epss 0.00
The DFX module has a vulnerability of improper validation of integrity check values.Successful exploitation of this vulnerability may affect system stability.
- risk 0.49cvss 7.5epss 0.01
The communication module has a service logic error vulnerability.Successful exploitation of this vulnerability may affect data confidentiality.
- risk 0.49cvss 7.5epss 0.01
There is a heap-based buffer overflow vulnerability in system components. Successful exploitation of this vulnerability may affect system stability.
- risk 0.49cvss 7.5epss 0.01
There is an improper access control vulnerability in the video module. Successful exploitation of this vulnerability may affect confidentiality.
- risk 0.49cvss 7.5epss 0.01
There is a vulnerability of copying input buffer without checking its size in the video framework. Successful exploitation of this vulnerability may affect availability.
- risk 0.49cvss 7.5epss 0.01
There is a vulnerability of accessing resources using an incompatible type (type confusion) in the Bastet module. Successful exploitation of this vulnerability may affect integrity.
- risk 0.49cvss 7.5epss 0.01
There is a heap-based buffer overflow vulnerability in the video framework. Successful exploitation of this vulnerability may affect availability.
- risk 0.49cvss 7.5epss 0.01
There is a heap-based buffer overflow vulnerability in the video framework. Successful exploitation of this vulnerability may affect availability.
- risk 0.49cvss 7.5epss 0.01
There is a heap-based and stack-based buffer overflow vulnerability in the video framework. Successful exploitation of this vulnerability may affect availability.
- risk 0.49cvss 7.5epss 0.01
There is a vulnerability of copying input buffer without checking its size in the video framework. Successful exploitation of this vulnerability may affect availability.
- risk 0.49cvss 7.5epss 0.01
There is an integer underflow vulnerability in the atcmdserver module. Successful exploitation of this vulnerability may affect integrity.
- risk 0.49cvss 7.5epss 0.01
There is an incorrect buffer size calculation vulnerability in the video framework.Successful exploitation of this vulnerability may affect availability.
- risk 0.49cvss 7.5epss 0.01
There is an unauthorized access vulnerability in system components. Successful exploitation of this vulnerability will affect confidentiality.
- risk 0.49cvss 7.5epss 0.01
There is a permission control vulnerability in the PMS module. Successful exploitation of this vulnerability can lead to sensitive system information being obtained without authorization.
- risk 0.49cvss 7.5epss 0.01
There is an incorrect buffer size calculation vulnerability in the video framework. Successful exploitation of this vulnerability will affect availability.
- risk 0.49cvss 7.5epss 0.01
There is a vulnerability of memory not being released after effective lifetime in the Bastet module. Successful exploitation of this vulnerability may affect integrity.
- risk 0.49cvss 7.5epss 0.01
There is a DoS vulnerability in smartphones. Successful exploitation of this vulnerability may affect service integrity.
- risk 0.49cvss 7.5epss 0.01
There is a DoS vulnerability in smartphones. Successful exploitation of this vulnerability may affect service availability.
Page 6 of 13