Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Harmonyos
(Huawei)| Repositories |
Unknown: This might be proprietary software. |
| #Vulnerabilities | 897 |
| Date | Id | Summary | Products | Score | Patch | Annotated |
|---|---|---|---|---|---|---|
| 2025-08-06 | CVE-2025-54652 | Path traversal vulnerability in the virtualization base module. Successful exploitation of this vulnerability may affect the confidentiality of the virtualization module. | Harmonyos | 5.5 | ||
| 2025-08-06 | CVE-2025-54653 | Path traversal vulnerability in the virtualization file module. Successful exploitation of this vulnerability may affect the confidentiality of the virtualization file module. | Harmonyos | 6.5 | ||
| 2025-07-07 | CVE-2025-53168 | Vulnerability of bypassing the process to start SA and use related functions on distributed cameras Impact: Successful exploitation of this vulnerability may allow the peer device to use the camera without user awareness. | Harmonyos | N/A | ||
| 2025-07-07 | CVE-2025-53169 | Vulnerability of bypassing the process to start SA and use related functions on distributed cameras Impact: Successful exploitation of this vulnerability may allow the peer device to use the camera without user awareness. | Harmonyos | N/A | ||
| 2025-07-07 | CVE-2025-53177 | Permission bypass vulnerability in the calendar storage module Impact: Successful exploitation of this vulnerability may affect the schedule syncing function of watches. | Emui, Harmonyos | N/A | ||
| 2025-07-07 | CVE-2025-53178 | Permission bypass vulnerability in the calendar storage module Impact: Successful exploitation of this vulnerability may affect the schedule reminder function of head units. | Emui, Harmonyos | N/A | ||
| 2025-07-07 | CVE-2025-53185 | Virtual address reuse issue in the memory management module, which can be exploited by non-privileged users to access released memory Impact: Successful exploitation of this vulnerability may affect service integrity. | Emui, Harmonyos | 5.5 | ||
| 2025-07-07 | CVE-2025-53186 | Vulnerability that allows third-party call apps to send broadcasts without verification in the audio framework module Impact: Successful exploitation of this vulnerability may affect availability. | Emui, Harmonyos | 6.2 | ||
| 2025-08-06 | CVE-2025-54611 | EXTRA_REFERRER resource read vulnerability in the Gallery module. Impact: Successful exploitation of this vulnerability may affect service confidentiality. | Emui, Harmonyos | 5.5 | ||
| 2025-08-06 | CVE-2025-54609 | Out-of-bounds access vulnerability in the audio codec module. Impact: Successful exploitation of this vulnerability may affect availability. | Harmonyos | 7.5 |