Emui
by Huawei
CVEs (820)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2021-36998 | Med | 0.34 | 5.3 | 0.01 | Oct 28, 2021 | There is an Improper verification vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may allow attempts to read an array that is out of bounds. | ||
| CVE-2021-36996 | Med | 0.34 | 5.3 | 0.01 | Oct 28, 2021 | There is an Improper verification vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may cause transmission of certain virtual information. | ||
| CVE-2021-22490 | Med | 0.34 | 5.3 | 0.01 | Oct 28, 2021 | There is a Permission verification vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may affect the device performance. | ||
| CVE-2021-22482 | Med | 0.34 | 5.3 | 0.00 | Oct 28, 2021 | There is an Uninitialized variable vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may cause transmission of invalid data. | ||
| CVE-2021-22475 | Med | 0.34 | 5.3 | 0.01 | Oct 28, 2021 | There is an Improper permission management vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2021-22407 | Med | 0.34 | 5.3 | 0.01 | Oct 28, 2021 | There is a Configuration defects in Huawei Smartphone.Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2021-22346 | Med | 0.34 | 5.3 | 0.01 | Jun 30, 2021 | There is an Improper Permission Management Vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may lead to the disclosure of user habits. | ||
| CVE-2021-22325 | Med | 0.34 | 5.3 | 0.00 | Jun 3, 2021 | There is an Information Disclosure vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may result in video streams being intercepted during transmission. | ||
| CVE-2025-54646 | Med | 0.33 | 5.1 | 0.00 | Aug 6, 2025 | Vulnerability of inadequate packet length check in the BLE module. Impact: Successful exploitation of this vulnerability may affect performance. | ||
| CVE-2024-51527 | Med | 0.33 | 5.1 | 0.00 | Nov 5, 2024 | Permission control vulnerability in the Gallery app Impact: Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2024-45449 | Med | 0.33 | 5.1 | 0.00 | Sep 4, 2024 | Access permission verification vulnerability in the ringtone setting module Impact: Successful exploitation of this vulnerability may affect service confidentiality. | ||
| CVE-2024-45442 | Med | 0.33 | 5.1 | 0.00 | Sep 4, 2024 | Vulnerability of permission verification for APIs in the DownloadProviderMain module Impact: Successful exploitation of this vulnerability will affect availability. | ||
| CVE-2025-53178 | Med | 0.31 | 4.8 | 0.00 | Jul 7, 2025 | Permission bypass vulnerability in the calendar storage module Impact: Successful exploitation of this vulnerability may affect the schedule reminder function of head units. | ||
| CVE-2024-47293 | Med | 0.31 | 4.7 | 0.00 | Sep 27, 2024 | Out-of-bounds write vulnerability in the HAL-WIFI module Impact: Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2023-52384 | Med | 0.31 | 4.7 | 0.00 | May 14, 2024 | Double-free vulnerability in the RSMC module Impact: Successful exploitation of this vulnerability will affect availability. | ||
| CVE-2023-52383 | Med | 0.31 | 4.7 | 0.00 | May 14, 2024 | Double-free vulnerability in the RSMC module Impact: Successful exploitation of this vulnerability will affect availability. | ||
| CVE-2022-31758 | Med | 0.31 | 4.7 | 0.00 | Jun 13, 2022 | The kernel module has the race condition vulnerability. Successful exploitation of this vulnerability may affect data confidentiality. | ||
| CVE-2021-40015 | Med | 0.31 | 4.7 | 0.00 | Feb 9, 2022 | There is a race condition vulnerability in the binder driver subsystem in the kernel.Successful exploitation of this vulnerability may affect kernel stability. | ||
| CVE-2021-40006 | Med | 0.30 | 4.6 | 0.00 | Jan 10, 2022 | Vulnerability of design defects in the security algorithm component. Successful exploitation of this vulnerability may affect confidentiality. | ||
| CVE-2025-54637 | Med | 0.29 | 4.4 | 0.00 | Aug 6, 2025 | Out-of-bounds array access issue due to insufficient data verification in the kernel ambient light module. Impact: Successful exploitation of this vulnerability may affect service confidentiality. |
- risk 0.34cvss 5.3epss 0.01
There is an Improper verification vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may allow attempts to read an array that is out of bounds.
- risk 0.34cvss 5.3epss 0.01
There is an Improper verification vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may cause transmission of certain virtual information.
- risk 0.34cvss 5.3epss 0.01
There is a Permission verification vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may affect the device performance.
- risk 0.34cvss 5.3epss 0.00
There is an Uninitialized variable vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may cause transmission of invalid data.
- risk 0.34cvss 5.3epss 0.01
There is an Improper permission management vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.34cvss 5.3epss 0.01
There is a Configuration defects in Huawei Smartphone.Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.34cvss 5.3epss 0.01
There is an Improper Permission Management Vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may lead to the disclosure of user habits.
- risk 0.34cvss 5.3epss 0.00
There is an Information Disclosure vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may result in video streams being intercepted during transmission.
- risk 0.33cvss 5.1epss 0.00
Vulnerability of inadequate packet length check in the BLE module. Impact: Successful exploitation of this vulnerability may affect performance.
- risk 0.33cvss 5.1epss 0.00
Permission control vulnerability in the Gallery app Impact: Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.33cvss 5.1epss 0.00
Access permission verification vulnerability in the ringtone setting module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
- risk 0.33cvss 5.1epss 0.00
Vulnerability of permission verification for APIs in the DownloadProviderMain module Impact: Successful exploitation of this vulnerability will affect availability.
- risk 0.31cvss 4.8epss 0.00
Permission bypass vulnerability in the calendar storage module Impact: Successful exploitation of this vulnerability may affect the schedule reminder function of head units.
- risk 0.31cvss 4.7epss 0.00
Out-of-bounds write vulnerability in the HAL-WIFI module Impact: Successful exploitation of this vulnerability may affect availability.
- risk 0.31cvss 4.7epss 0.00
Double-free vulnerability in the RSMC module Impact: Successful exploitation of this vulnerability will affect availability.
- risk 0.31cvss 4.7epss 0.00
Double-free vulnerability in the RSMC module Impact: Successful exploitation of this vulnerability will affect availability.
- risk 0.31cvss 4.7epss 0.00
The kernel module has the race condition vulnerability. Successful exploitation of this vulnerability may affect data confidentiality.
- risk 0.31cvss 4.7epss 0.00
There is a race condition vulnerability in the binder driver subsystem in the kernel.Successful exploitation of this vulnerability may affect kernel stability.
- risk 0.30cvss 4.6epss 0.00
Vulnerability of design defects in the security algorithm component. Successful exploitation of this vulnerability may affect confidentiality.
- risk 0.29cvss 4.4epss 0.00
Out-of-bounds array access issue due to insufficient data verification in the kernel ambient light module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Page 39 of 41