CVE-2021-37037
📋 TL;DR
This vulnerability in Huawei smartphones involves invalid address access that can be exploited to cause device restarts. It affects Huawei devices running HarmonyOS or EMUI. Successful exploitation disrupts device availability through denial of service.
💻 Affected Systems
- Huawei smartphones
📦 What is this software?
Emui by Huawei
Emui by Huawei
Harmonyos by Huawei
Magic Ui by Huawei
Magic Ui by Huawei
⚠️ Risk & Real-World Impact
Worst Case
Persistent device restarts leading to complete denial of service, potentially requiring factory reset or physical intervention.
Likely Case
Temporary device restart causing service disruption and potential data loss from unsaved work.
If Mitigated
No impact if patched; unpatched devices remain vulnerable to restart attacks.
🎯 Exploit Status
Exploitation likely requires malicious app installation or local access; no public exploit details available.
🛠️ Fix & Mitigation
✅ Official Fix
Patch Version: September 2021 security updates
Vendor Advisory: https://consumer.huawei.com/en/support/bulletin/2021/9/
Restart Required: Yes
Instructions:
1. Check for system updates in Settings > System & updates > Software update. 2. Install September 2021 security update. 3. Restart device after installation.
🔧 Temporary Workarounds
Restrict app installations
allOnly install apps from trusted sources like official app stores
Disable unknown sources
allPrevent installation of apps from unknown sources in device settings
🧯 If You Can't Patch
- Isolate affected devices from critical networks and functions
- Implement strict app installation policies and monitor for suspicious behavior
🔍 How to Verify
Check if Vulnerable:
Check if device has September 2021 security update installed via Settings > System & updates > Software update
Check Version:
Settings > About phone > Build number
Verify Fix Applied:
Confirm September 2021 security update is installed and device build number matches patched version
📡 Detection & Monitoring
Log Indicators:
- Unexpected device restarts
- Crash logs mentioning memory access violations
Network Indicators:
- None - local exploitation only
SIEM Query:
Device logs showing repeated unexpected restarts or crash reports
🔗 References
- https://consumer.huawei.com/en/support/bulletin/2021/9/
- https://device.harmonyos.com/en/docs/security/update/security-bulletins-202109-0000001196270727
- https://consumer.huawei.com/en/support/bulletin/2021/9/
- https://device.harmonyos.com/en/docs/security/update/security-bulletins-202109-0000001196270727