Harmonyos
by Huawei
CVEs (1,079)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2023-46769 | Hig | 0.49 | 7.5 | 0.01 | Nov 8, 2023 | Use-After-Free (UAF) vulnerability in the dubai module. Successful exploitation of this vulnerability will affect availability. | ||
| CVE-2023-46768 | Hig | 0.49 | 7.5 | 0.01 | Nov 8, 2023 | Multi-thread vulnerability in the idmap module. Successful exploitation of this vulnerability may cause features to perform abnormally. | ||
| CVE-2023-44119 | Hig | 0.49 | 7.5 | 0.00 | Oct 11, 2023 | Vulnerability of mutual exclusion management in the kernel module.Successful exploitation of this vulnerability will affect availability. | ||
| CVE-2023-44114 | Hig | 0.49 | 7.5 | 0.00 | Oct 11, 2023 | Out-of-bounds array vulnerability in the dataipa module.Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2023-44108 | Hig | 0.49 | 7.5 | 0.00 | Oct 11, 2023 | Type confusion vulnerability in the distributed file module.Successful exploitation of this vulnerability may cause the device to restart. | ||
| CVE-2023-44111 | Hig | 0.49 | 7.5 | 0.00 | Oct 11, 2023 | Vulnerability of brute-force attacks on the device authentication module.Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2023-44104 | Hig | 0.49 | 7.5 | 0.00 | Oct 11, 2023 | Broadcast permission control vulnerability in the Bluetooth module.Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2023-44103 | Hig | 0.49 | 7.5 | 0.00 | Oct 11, 2023 | Out-of-bounds read vulnerability in the Bluetooth module.Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2023-44101 | Hig | 0.49 | 7.5 | 0.00 | Oct 11, 2023 | The Bluetooth module has a vulnerability in permission control for broadcast notifications.Successful exploitation of this vulnerability may affect confidentiality. | ||
| CVE-2023-44100 | Hig | 0.49 | 7.5 | 0.00 | Oct 11, 2023 | Broadcast permission control vulnerability in the Bluetooth module.Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2023-44097 | Hig | 0.49 | 7.5 | 0.00 | Oct 11, 2023 | Vulnerability of the permission to access device SNs being improperly managed.Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2023-44095 | Hig | 0.49 | 7.5 | 0.00 | Oct 11, 2023 | Use-After-Free (UAF) vulnerability in the surfaceflinger module.Successful exploitation of this vulnerability can cause system crash. | ||
| CVE-2023-44109 | Hig | 0.49 | 7.5 | 0.00 | Oct 11, 2023 | Clone vulnerability in the huks ta module.Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2023-44096 | Hig | 0.49 | 7.5 | 0.00 | Oct 11, 2023 | Vulnerability of brute-force attacks on the device authentication module.Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2023-44093 | Hig | 0.49 | 7.5 | 0.00 | Oct 11, 2023 | Vulnerability of package names' public keys not being verified in the security module.Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2023-41309 | Hig | 0.49 | 7.5 | 0.01 | Sep 27, 2023 | Permission control vulnerability in the MediaPlaybackController module. Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2023-41308 | Hig | 0.49 | 7.5 | 0.01 | Sep 27, 2023 | Screenshot vulnerability in the input module. Successful exploitation of this vulnerability may affect confidentiality. | ||
| CVE-2023-41307 | Hig | 0.49 | 7.5 | 0.01 | Sep 27, 2023 | Memory overwriting vulnerability in the security module. Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2023-41305 | Hig | 0.49 | 7.5 | 0.00 | Sep 27, 2023 | Vulnerability of 5G messages being sent without being encrypted in a VPN environment in the SMS message module. Successful exploitation of this vulnerability may affect confidentiality. | ||
| CVE-2022-48606 | Hig | 0.49 | 7.5 | 0.00 | Sep 27, 2023 | Stability-related vulnerability in the binder background management and control module. Successful exploitation of this vulnerability may affect availability. |
- risk 0.49cvss 7.5epss 0.01
Use-After-Free (UAF) vulnerability in the dubai module. Successful exploitation of this vulnerability will affect availability.
- risk 0.49cvss 7.5epss 0.01
Multi-thread vulnerability in the idmap module. Successful exploitation of this vulnerability may cause features to perform abnormally.
- risk 0.49cvss 7.5epss 0.00
Vulnerability of mutual exclusion management in the kernel module.Successful exploitation of this vulnerability will affect availability.
- risk 0.49cvss 7.5epss 0.00
Out-of-bounds array vulnerability in the dataipa module.Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.49cvss 7.5epss 0.00
Type confusion vulnerability in the distributed file module.Successful exploitation of this vulnerability may cause the device to restart.
- risk 0.49cvss 7.5epss 0.00
Vulnerability of brute-force attacks on the device authentication module.Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.49cvss 7.5epss 0.00
Broadcast permission control vulnerability in the Bluetooth module.Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.49cvss 7.5epss 0.00
Out-of-bounds read vulnerability in the Bluetooth module.Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.49cvss 7.5epss 0.00
The Bluetooth module has a vulnerability in permission control for broadcast notifications.Successful exploitation of this vulnerability may affect confidentiality.
- risk 0.49cvss 7.5epss 0.00
Broadcast permission control vulnerability in the Bluetooth module.Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.49cvss 7.5epss 0.00
Vulnerability of the permission to access device SNs being improperly managed.Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.49cvss 7.5epss 0.00
Use-After-Free (UAF) vulnerability in the surfaceflinger module.Successful exploitation of this vulnerability can cause system crash.
- risk 0.49cvss 7.5epss 0.00
Clone vulnerability in the huks ta module.Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.49cvss 7.5epss 0.00
Vulnerability of brute-force attacks on the device authentication module.Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.49cvss 7.5epss 0.00
Vulnerability of package names' public keys not being verified in the security module.Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.49cvss 7.5epss 0.01
Permission control vulnerability in the MediaPlaybackController module. Successful exploitation of this vulnerability may affect availability.
- risk 0.49cvss 7.5epss 0.01
Screenshot vulnerability in the input module. Successful exploitation of this vulnerability may affect confidentiality.
- risk 0.49cvss 7.5epss 0.01
Memory overwriting vulnerability in the security module. Successful exploitation of this vulnerability may affect availability.
- risk 0.49cvss 7.5epss 0.00
Vulnerability of 5G messages being sent without being encrypted in a VPN environment in the SMS message module. Successful exploitation of this vulnerability may affect confidentiality.
- risk 0.49cvss 7.5epss 0.00
Stability-related vulnerability in the binder background management and control module. Successful exploitation of this vulnerability may affect availability.
Page 16 of 54