Vulnerabilities > Huawei > Magic UI

DATE CVE VULNERABILITY TITLE RISK
2022-02-25 CVE-2021-37103 Incorrect Default Permissions vulnerability in Huawei Emui and Magic UI
There is an improper permission management vulnerability in the Wallet apps.
local
low complexity
huawei CWE-276
5.5
2022-02-09 CVE-2021-40015 Race Condition vulnerability in Huawei Emui, Harmonyos and Magic UI
There is a race condition vulnerability in the binder driver subsystem in the kernel.Successful exploitation of this vulnerability may affect kernel stability.
local
high complexity
huawei CWE-362
4.7
2022-02-09 CVE-2021-40044 Unspecified vulnerability in Huawei Emui and Magic UI
There is a permission verification vulnerability in the Bluetooth module.Successful exploitation of this vulnerability may cause unauthorized operations.
low complexity
huawei
8.8
2022-02-09 CVE-2021-40045 Improper Verification of Cryptographic Signature vulnerability in Huawei Emui, Harmonyos and Magic UI
There is a vulnerability of signature verification mechanism failure in system upgrade through recovery mode.Successful exploitation of this vulnerability may affect service confidentiality.
local
low complexity
huawei CWE-347
5.5
2022-01-10 CVE-2021-39993 Integer Overflow or Wraparound vulnerability in Huawei Emui and Magic UI
There is an Integer overflow vulnerability with ACPU in smartphones.
network
low complexity
huawei CWE-190
critical
9.8
2022-01-10 CVE-2021-39996 Out-of-bounds Write vulnerability in Huawei Emui, Harmonyos and Magic UI
There is a Heap-based buffer overflow vulnerability with the NFC module in smartphones.
network
low complexity
huawei CWE-787
critical
9.8
2022-01-10 CVE-2021-39998 Unspecified vulnerability in Huawei Emui, Harmonyos and Magic UI
There is Vulnerability of APIs being concurrently called for multiple times in HwConnectivityExService a in smartphones.
network
low complexity
huawei
7.5
2022-01-10 CVE-2021-40009 Out-of-bounds Write vulnerability in Huawei Emui, Harmonyos and Magic UI
There is an Out-of-bounds write vulnerability in the AOD module in smartphones.
network
low complexity
huawei CWE-787
5.3
2022-01-10 CVE-2021-40010 Out-of-bounds Write vulnerability in Huawei Emui, Harmonyos and Magic UI
The bone voice ID TA has a heap overflow vulnerability.Successful exploitation of this vulnerability may result in malicious code execution.
network
low complexity
huawei CWE-787
critical
9.8
2022-01-10 CVE-2021-40011 Resource Exhaustion vulnerability in Huawei Emui, Harmonyos and Magic UI
There is an uncontrolled resource consumption vulnerability in the display module.
network
low complexity
huawei CWE-400
7.5