Harmonyos
by Huawei
CVEs (1,079)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2022-38987 | Hig | 0.49 | 7.5 | 0.01 | Sep 16, 2022 | The secure OS module has configuration defects. Successful exploitation of this vulnerability may affect system availability. | ||
| CVE-2022-38979 | Hig | 0.49 | 7.5 | 0.00 | Sep 16, 2022 | The secure OS module has configuration defects. Successful exploitation of this vulnerability may affect data confidentiality. | ||
| CVE-2022-38978 | Hig | 0.49 | 7.5 | 0.00 | Sep 16, 2022 | The secure OS module has configuration defects. Successful exploitation of this vulnerability may affect data confidentiality. | ||
| CVE-2021-46836 | Hig | 0.49 | 7.5 | 0.00 | Sep 16, 2022 | Implementation of the WLAN module interfaces has the information disclosure vulnerability. Successful exploitation of this vulnerability may affect data confidentiality. | ||
| CVE-2021-40024 | Hig | 0.49 | 7.5 | 0.00 | Sep 16, 2022 | Implementation of the WLAN module interfaces has the information disclosure vulnerability. Successful exploitation of this vulnerability may affect data confidentiality. | ||
| CVE-2022-37008 | Hig | 0.49 | 7.5 | 0.00 | Aug 10, 2022 | The recovery module has a vulnerability of bypassing the verification of an update package before use. Successful exploitation of this vulnerability may affect system stability. | ||
| CVE-2022-37007 | Hig | 0.49 | 7.5 | 0.01 | Aug 10, 2022 | The chinadrm module has an out-of-bounds read vulnerability. Successful exploitation of this vulnerability may affect the availability. | ||
| CVE-2022-37006 | Hig | 0.49 | 7.5 | 0.01 | Aug 10, 2022 | Permission control vulnerability in the network module. Successful exploitation of this vulnerability may affect service availability. | ||
| CVE-2022-37005 | Hig | 0.49 | 7.5 | 0.01 | Aug 10, 2022 | The Settings application has an argument injection vulnerability. Successful exploitation of this vulnerability may affect data confidentiality. | ||
| CVE-2022-37004 | Hig | 0.49 | 7.5 | 0.01 | Aug 10, 2022 | The Settings application has a vulnerability of bypassing the out-of-box experience (OOBE). Successful exploitation of this vulnerability may affect the availability. | ||
| CVE-2022-37001 | Hig | 0.49 | 7.5 | 0.01 | Aug 10, 2022 | The diag-router module has a vulnerability in intercepting excessive long and short instructions. Successful exploitation of this vulnerability will cause the diag-router module to crash. | ||
| CVE-2021-40040 | Hig | 0.49 | 7.5 | 0.01 | Aug 10, 2022 | Vulnerability of writing data to an arbitrary address in the HW_KEYMASTER module. Successful exploitation of this vulnerability may affect confidentiality. | ||
| CVE-2021-40034 | Hig | 0.49 | 7.5 | 0.01 | Aug 10, 2022 | The video framework has the memory overwriting vulnerability caused by addition overflow. Successful exploitation of this vulnerability may affect the availability. | ||
| CVE-2021-40030 | Hig | 0.49 | 7.5 | 0.01 | Aug 10, 2022 | The My HUAWEI app has a defect in the design. Successful exploitation of this vulnerability may affect data confidentiality. | ||
| CVE-2022-34743 | Hig | 0.49 | 7.5 | 0.01 | Jul 12, 2022 | The AT commands of the USB port have an out-of-bounds read vulnerability. Successful exploitation of this vulnerability may affect system availability. | ||
| CVE-2022-34742 | Hig | 0.49 | 7.5 | 0.01 | Jul 12, 2022 | The system module has a read/write vulnerability. Successful exploitation of this vulnerability may affect data confidentiality. | ||
| CVE-2022-34739 | Hig | 0.49 | 7.5 | 0.01 | Jul 12, 2022 | The fingerprint module has a vulnerability of overflow in arithmetic addition. Successful exploitation of this vulnerability may result in the acquisition of data from unknown addresses in address mappings. | ||
| CVE-2022-34738 | Hig | 0.49 | 7.5 | 0.01 | Jul 12, 2022 | The SystemUI module has a vulnerability in permission control. If this vulnerability is successfully exploited, users are unaware of the service running in the background. | ||
| CVE-2022-34736 | Hig | 0.49 | 7.5 | 0.01 | Jul 12, 2022 | The frame scheduling module has a null pointer dereference vulnerability. Successful exploitation of this vulnerability will affect the kernel availability. | ||
| CVE-2022-34735 | Hig | 0.49 | 7.5 | 0.01 | Jul 12, 2022 | The frame scheduling module has a null pointer dereference vulnerability. Successful exploitation of this vulnerability will affect the kernel availability. |
- risk 0.49cvss 7.5epss 0.01
The secure OS module has configuration defects. Successful exploitation of this vulnerability may affect system availability.
- risk 0.49cvss 7.5epss 0.00
The secure OS module has configuration defects. Successful exploitation of this vulnerability may affect data confidentiality.
- risk 0.49cvss 7.5epss 0.00
The secure OS module has configuration defects. Successful exploitation of this vulnerability may affect data confidentiality.
- risk 0.49cvss 7.5epss 0.00
Implementation of the WLAN module interfaces has the information disclosure vulnerability. Successful exploitation of this vulnerability may affect data confidentiality.
- risk 0.49cvss 7.5epss 0.00
Implementation of the WLAN module interfaces has the information disclosure vulnerability. Successful exploitation of this vulnerability may affect data confidentiality.
- risk 0.49cvss 7.5epss 0.00
The recovery module has a vulnerability of bypassing the verification of an update package before use. Successful exploitation of this vulnerability may affect system stability.
- risk 0.49cvss 7.5epss 0.01
The chinadrm module has an out-of-bounds read vulnerability. Successful exploitation of this vulnerability may affect the availability.
- risk 0.49cvss 7.5epss 0.01
Permission control vulnerability in the network module. Successful exploitation of this vulnerability may affect service availability.
- risk 0.49cvss 7.5epss 0.01
The Settings application has an argument injection vulnerability. Successful exploitation of this vulnerability may affect data confidentiality.
- risk 0.49cvss 7.5epss 0.01
The Settings application has a vulnerability of bypassing the out-of-box experience (OOBE). Successful exploitation of this vulnerability may affect the availability.
- risk 0.49cvss 7.5epss 0.01
The diag-router module has a vulnerability in intercepting excessive long and short instructions. Successful exploitation of this vulnerability will cause the diag-router module to crash.
- risk 0.49cvss 7.5epss 0.01
Vulnerability of writing data to an arbitrary address in the HW_KEYMASTER module. Successful exploitation of this vulnerability may affect confidentiality.
- risk 0.49cvss 7.5epss 0.01
The video framework has the memory overwriting vulnerability caused by addition overflow. Successful exploitation of this vulnerability may affect the availability.
- risk 0.49cvss 7.5epss 0.01
The My HUAWEI app has a defect in the design. Successful exploitation of this vulnerability may affect data confidentiality.
- risk 0.49cvss 7.5epss 0.01
The AT commands of the USB port have an out-of-bounds read vulnerability. Successful exploitation of this vulnerability may affect system availability.
- risk 0.49cvss 7.5epss 0.01
The system module has a read/write vulnerability. Successful exploitation of this vulnerability may affect data confidentiality.
- risk 0.49cvss 7.5epss 0.01
The fingerprint module has a vulnerability of overflow in arithmetic addition. Successful exploitation of this vulnerability may result in the acquisition of data from unknown addresses in address mappings.
- risk 0.49cvss 7.5epss 0.01
The SystemUI module has a vulnerability in permission control. If this vulnerability is successfully exploited, users are unaware of the service running in the background.
- risk 0.49cvss 7.5epss 0.01
The frame scheduling module has a null pointer dereference vulnerability. Successful exploitation of this vulnerability will affect the kernel availability.
- risk 0.49cvss 7.5epss 0.01
The frame scheduling module has a null pointer dereference vulnerability. Successful exploitation of this vulnerability will affect the kernel availability.
Page 24 of 54