Emui
by Huawei
CVEs (820)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2023-52358 | Med | 0.40 | 6.2 | 0.00 | Feb 18, 2024 | Vulnerability of configuration defects in some APIs of the audio module.Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2026-24919 | Med | 0.39 | 6.0 | 0.00 | Feb 6, 2026 | Out-of-bounds write vulnerability in the DFX module. Impact: Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2024-56438 | Med | 0.39 | 6.0 | 0.00 | Jan 8, 2025 | Vulnerability of improper memory address protection in the HUKS module Impact: Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2026-34859 | Med | 0.38 | 5.9 | 0.00 | Apr 13, 2026 | UAF vulnerability in the kernel module. Impact: Successful exploitation of this vulnerability will affect availability and confidentiality. | ||
| CVE-2026-24928 | Med | 0.38 | 5.8 | 0.00 | Feb 6, 2026 | Out-of-bounds write vulnerability in the file system module. Impact: Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2025-58311 | Med | 0.38 | 5.8 | 0.00 | Nov 28, 2025 | UAF vulnerability in the USB driver module. Impact: Successful exploitation of this vulnerability will affect availability and confidentiality. | ||
| CVE-2025-53186 | Med | 0.38 | 5.9 | 0.00 | Jul 7, 2025 | Vulnerability that allows third-party call apps to send broadcasts without verification in the audio framework module Impact: Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2024-5465 | Med | 0.38 | 5.9 | 0.00 | Jun 14, 2024 | Function vulnerabilities in the Calendar module Impact: Successful exploitation of this vulnerability will affect availability. | ||
| CVE-2024-32998 | Med | 0.38 | 5.9 | 0.00 | May 14, 2024 | NULL pointer access vulnerability in the clock module Impact: Successful exploitation of this vulnerability will affect availability. | ||
| CVE-2022-48613 | Med | 0.38 | 5.9 | 0.00 | Nov 8, 2023 | Race condition vulnerability in the kernel module. Successful exploitation of this vulnerability may cause variable values to be read with the condition evaluation bypassed. | ||
| CVE-2022-48509 | Med | 0.38 | 5.9 | 0.00 | Jul 6, 2023 | Race condition vulnerability due to multi-thread access to mutually exclusive resources in Huawei Share. Successful exploitation of this vulnerability may cause the program to exit abnormally. | ||
| CVE-2022-44563 | Med | 0.38 | 5.9 | 0.00 | Nov 9, 2022 | There is a race condition vulnerability in SD upgrade mode. Successful exploitation of this vulnerability may affect data confidentiality. | ||
| CVE-2022-39006 | Med | 0.38 | 5.9 | 0.00 | Sep 16, 2022 | The MPTCP module has the race condition vulnerability. Successful exploitation of this vulnerability may cause the device to restart. | ||
| CVE-2021-40055 | Med | 0.38 | 5.9 | 0.01 | Mar 10, 2022 | There is a man-in-the-middle attack vulnerability during system update download in recovery mode. Successful exploitation of this vulnerability may affect integrity. | ||
| CVE-2021-36987 | Med | 0.38 | 5.9 | 0.00 | Oct 28, 2021 | There is a issue that nodes in the linked list being freed for multiple times in Huawei Smartphone due to race conditions. Successful exploitation of this vulnerability can cause the system to restart. | ||
| CVE-2026-34855 | Med | 0.37 | 5.7 | 0.00 | Apr 13, 2026 | Out-of-bounds write vulnerability in the kernel module. Impact: Successful exploitation of this vulnerability will affect availability and confidentiality. | ||
| CVE-2026-34854 | Med | 0.37 | 5.7 | 0.00 | Apr 13, 2026 | UAF vulnerability in the kernel module. Impact: Successful exploitation of this vulnerability will affect availability and confidentiality. | ||
| CVE-2025-68963 | Med | 0.37 | 5.7 | 0.00 | Jan 14, 2026 | Man-in-the-middle attack vulnerability in the Clone module. Impact: Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2024-57958 | Med | 0.37 | 5.7 | 0.00 | Feb 6, 2025 | Out-of-bounds array read vulnerability in the FFRT module Impact: Successful exploitation of this vulnerability may cause features to perform abnormally. | ||
| CVE-2026-24927 | Med | 0.36 | 5.5 | 0.00 | Feb 6, 2026 | Out-of-bounds access vulnerability in the frequency modulation module. Impact: Successful exploitation of this vulnerability may affect availability. |
- risk 0.40cvss 6.2epss 0.00
Vulnerability of configuration defects in some APIs of the audio module.Successful exploitation of this vulnerability may affect availability.
- risk 0.39cvss 6.0epss 0.00
Out-of-bounds write vulnerability in the DFX module. Impact: Successful exploitation of this vulnerability may affect availability.
- risk 0.39cvss 6.0epss 0.00
Vulnerability of improper memory address protection in the HUKS module Impact: Successful exploitation of this vulnerability may affect availability.
- risk 0.38cvss 5.9epss 0.00
UAF vulnerability in the kernel module. Impact: Successful exploitation of this vulnerability will affect availability and confidentiality.
- risk 0.38cvss 5.8epss 0.00
Out-of-bounds write vulnerability in the file system module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.38cvss 5.8epss 0.00
UAF vulnerability in the USB driver module. Impact: Successful exploitation of this vulnerability will affect availability and confidentiality.
- risk 0.38cvss 5.9epss 0.00
Vulnerability that allows third-party call apps to send broadcasts without verification in the audio framework module Impact: Successful exploitation of this vulnerability may affect availability.
- risk 0.38cvss 5.9epss 0.00
Function vulnerabilities in the Calendar module Impact: Successful exploitation of this vulnerability will affect availability.
- risk 0.38cvss 5.9epss 0.00
NULL pointer access vulnerability in the clock module Impact: Successful exploitation of this vulnerability will affect availability.
- risk 0.38cvss 5.9epss 0.00
Race condition vulnerability in the kernel module. Successful exploitation of this vulnerability may cause variable values to be read with the condition evaluation bypassed.
- risk 0.38cvss 5.9epss 0.00
Race condition vulnerability due to multi-thread access to mutually exclusive resources in Huawei Share. Successful exploitation of this vulnerability may cause the program to exit abnormally.
- risk 0.38cvss 5.9epss 0.00
There is a race condition vulnerability in SD upgrade mode. Successful exploitation of this vulnerability may affect data confidentiality.
- risk 0.38cvss 5.9epss 0.00
The MPTCP module has the race condition vulnerability. Successful exploitation of this vulnerability may cause the device to restart.
- risk 0.38cvss 5.9epss 0.01
There is a man-in-the-middle attack vulnerability during system update download in recovery mode. Successful exploitation of this vulnerability may affect integrity.
- risk 0.38cvss 5.9epss 0.00
There is a issue that nodes in the linked list being freed for multiple times in Huawei Smartphone due to race conditions. Successful exploitation of this vulnerability can cause the system to restart.
- risk 0.37cvss 5.7epss 0.00
Out-of-bounds write vulnerability in the kernel module. Impact: Successful exploitation of this vulnerability will affect availability and confidentiality.
- risk 0.37cvss 5.7epss 0.00
UAF vulnerability in the kernel module. Impact: Successful exploitation of this vulnerability will affect availability and confidentiality.
- risk 0.37cvss 5.7epss 0.00
Man-in-the-middle attack vulnerability in the Clone module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.37cvss 5.7epss 0.00
Out-of-bounds array read vulnerability in the FFRT module Impact: Successful exploitation of this vulnerability may cause features to perform abnormally.
- risk 0.36cvss 5.5epss 0.00
Out-of-bounds access vulnerability in the frequency modulation module. Impact: Successful exploitation of this vulnerability may affect availability.
Page 34 of 41