Vulnerabilities
Vulnerable Software
Huawei:  >> Harmonyos  >> 2.1  Security Vulnerabilities
There is a race condition vulnerability in SD upgrade mode. Successful exploitation of this vulnerability may affect data confidentiality.
CVSS Score
5.9
EPSS Score
0.001
Published
2022-11-09
The home screen module has a vulnerability in service logic processing.Successful exploitation of this vulnerability may affect data integrity.
CVSS Score
7.5
EPSS Score
0.001
Published
2022-10-14
The communication framework module has a vulnerability of not truncating data properly.Successful exploitation of this vulnerability may affect data confidentiality.
CVSS Score
7.5
EPSS Score
0.001
Published
2022-10-14
The kernel module has an out-of-bounds read vulnerability.Successful exploitation of this vulnerability may cause memory overwriting.
CVSS Score
7.8
EPSS Score
0.0
Published
2022-10-14
The kernel module has an out-of-bounds read vulnerability.Successful exploitation of this vulnerability may cause memory overwriting.
CVSS Score
7.8
EPSS Score
0.0
Published
2022-10-14
The MPTCP module has an out-of-bounds write vulnerability.Successful exploitation of this vulnerability may cause root privilege escalation attacks implemented by modifying program information.
CVSS Score
9.8
EPSS Score
0.001
Published
2022-10-14
The kernel server has a vulnerability of not verifying the length of the data transferred in the user space.Successful exploitation of this vulnerability may cause out-of-bounds read in the kernel, which affects the device confidentiality and availability.
CVSS Score
7.1
EPSS Score
0.0
Published
2022-10-14
The BT Hfp Client module has a Use-After-Free (UAF) vulnerability.Successful exploitation of this vulnerability may result in arbitrary code execution.
CVSS Score
9.8
EPSS Score
0.002
Published
2022-10-14
The HwAirlink module has a heap overflow vulnerability.Successful exploitation of this vulnerability may cause out-of-bounds writes, resulting in modification of sensitive data.
CVSS Score
7.5
EPSS Score
0.001
Published
2022-10-14
The HwAirlink module has a heap overflow vulnerability in processing data packets of the proprietary protocol.Successful exploitation of this vulnerability may allow attackers to obtain process control permissions.
CVSS Score
9.8
EPSS Score
0.001
Published
2022-10-14


Contact Us

Shodan ® - All rights reserved