📦 Emui

by Huawei

🔍 What is Emui?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-42037

CRITICAL CVSS 9.3 Aug 8, 2024

This vulnerability involves uncaught exceptions in the Graphics module that could allow attackers to access sensitive information. It affects systems running Huawei software with the vulnerable Graphi...

CVE-2024-39671

CRITICAL CVSS 9.3 Jul 25, 2024

This CVE describes an access control vulnerability in Huawei's security verification module that could allow unauthorized access to sensitive information. The vulnerability affects Huawei consumer dev...

CVE-2023-52538

CRITICAL CVSS 9.1 Apr 8, 2024

This vulnerability allows attackers to bypass package name verification in the HwIms module, potentially disrupting services. It affects Huawei devices running HarmonyOS with the vulnerable HwIms modu...

CVE-2024-30415

CRITICAL CVSS 9.1 Apr 7, 2024

This CVE describes an improper permission control vulnerability in the window management module of Huawei/HarmonyOS devices. Successful exploitation allows attackers to affect system availability, pot...

CVE-2023-52381

CRITICAL CVSS 9.8 Feb 18, 2024

This CVE describes a script injection vulnerability in Huawei's email module that allows attackers to execute arbitrary code. Successful exploitation could compromise confidentiality, integrity, and a...

CVE-2023-52378

CRITICAL CVSS 9.8 Feb 18, 2024

This vulnerability involves incorrect service logic in Huawei's WindowManagerServices module, allowing attackers to cause abnormal feature behavior. It affects Huawei devices running HarmonyOS. With a...

CVE-2023-52369

CRITICAL CVSS 9.1 Feb 18, 2024

A stack overflow vulnerability in the NFC module allows attackers to execute arbitrary code or cause denial of service. This affects Huawei devices running HarmonyOS with vulnerable NFC implementation...

CVE-2023-52101

CRITICAL CVSS 9.1 Jan 16, 2024

This CVE describes a component exposure vulnerability in Huawei Wi-Fi modules that could allow attackers to compromise service availability and integrity. The vulnerability affects Huawei devices runn...

CVE-2023-52103

CRITICAL CVSS 9.8 Jan 16, 2024

This CVE-2023-52103 is a critical buffer overflow vulnerability in Huawei's FLP module that allows out-of-bounds read attacks. Successful exploitation could lead to arbitrary code execution or system ...

CVE-2023-46773

CRITICAL CVSS 9.8 Dec 6, 2023

This CVE-2023-46773 is a permission management vulnerability in Huawei's PMS (Package Management Service) module that allows local attackers to escalate privileges on affected devices. The vulnerabili...

CVE-2023-5801

CRITICAL CVSS 9.1 Nov 8, 2023

This vulnerability allows attackers to bypass identity verification in the face unlock module on affected Huawei devices. Successful exploitation could compromise device integrity and confidentiality ...

CVE-2023-44116

CRITICAL CVSS 9.8 Oct 11, 2023

This vulnerability in Huawei's APPWidget module allows apps to run without proper authorization due to insufficient permission verification. It affects Huawei devices running HarmonyOS, potentially en...

CVE-2023-44105

CRITICAL CVSS 9.8 Oct 11, 2023

This CVE describes a critical privilege escalation vulnerability in Huawei/HarmonyOS window management modules where permissions are not strictly verified. Attackers can exploit this to gain elevated ...

CVE-2023-44106

CRITICAL CVSS 9.8 Oct 11, 2023

This CVE-2023-44106 is an API permission management vulnerability in Huawei's Fwk-Display module that allows unauthorized access to display framework functions. Successful exploitation could lead to a...

CVE-2023-41296

CRITICAL CVSS 9.1 Sep 25, 2023

This CVE-2023-41296 is a missing authorization vulnerability in a Huawei kernel module that allows unauthorized access to kernel functions. Successful exploitation could compromise system integrity an...

CVE-2023-39402

CRITICAL CVSS 9.1 Aug 13, 2023

This CVE describes a parameter verification vulnerability in Huawei's installd module that allows unauthorized reading and writing of sandbox files. Attackers could potentially access or modify sensit...

CVE-2023-39400

CRITICAL CVSS 9.1 Aug 13, 2023

This CVE describes a parameter verification vulnerability in the installd module that allows unauthorized reading and writing of sandbox files. Attackers could potentially access or modify sensitive d...

CVE-2023-39398

CRITICAL CVSS 9.1 Aug 13, 2023

This vulnerability in Huawei's installd module allows attackers to bypass parameter verification, enabling unauthorized reading and writing of sandbox files. It affects Huawei devices running HarmonyO...

CVE-2023-39385

CRITICAL CVSS 9.1 Aug 13, 2023

This vulnerability involves configuration defects in the media module of certain Huawei products, allowing unauthorized access to affected systems. It affects Huawei devices running HarmonyOS with spe...

CVE-2023-39405

CRITICAL CVSS 9.8 Aug 13, 2023

This vulnerability allows out-of-bounds read/write operations in the Wi-Fi module, potentially enabling privilege escalation attacks. Successful exploitation could allow attackers to execute arbitrary...

CVE-2026-28542

HIGH CVSS 7.3 Mar 5, 2026

A permission bypass vulnerability in Huawei's system service framework allows attackers to circumvent intended access controls. This affects availability of Huawei consumer devices and wearables. User...

CVE-2026-28548

HIGH CVSS 7.1 Mar 5, 2026

This CVE describes an improper verification vulnerability in Huawei email applications that could allow attackers to access sensitive information. The vulnerability affects confidentiality by potentia...

CVE-2025-58302

HIGH CVSS 8.4 Nov 28, 2025

A permission control vulnerability in Huawei's Settings module allows unauthorized access to sensitive system settings. This affects Huawei devices running vulnerable firmware versions, potentially ex...

CVE-2025-54611

HIGH CVSS 7.3 Aug 6, 2025

The Gallery module in affected Huawei products contains an EXTRA_REFERRER resource read vulnerability that allows unauthorized access to sensitive information. This affects service confidentiality by ...

CVE-2025-31175

HIGH CVSS 8.4 Apr 7, 2025

A deserialization mismatch vulnerability in the DSoftBus module allows attackers to manipulate serialized data to potentially execute arbitrary code or disrupt services. This affects systems running H...

CVE-2025-31170

HIGH CVSS 8.4 Apr 7, 2025

This CVE describes an access control vulnerability in Huawei's security verification module that allows attackers to bypass authentication mechanisms. Successful exploitation could compromise system i...

CVE-2024-58124

HIGH CVSS 8.4 Apr 7, 2025

This CVE describes an access control vulnerability in Huawei's security verification module that allows attackers to bypass authentication mechanisms. Successful exploitation compromises system integr...

CVE-2024-58126

HIGH CVSS 8.4 Apr 7, 2025

This CVE describes an authentication bypass vulnerability in Huawei's security verification module that allows attackers to circumvent access controls. Successful exploitation could lead to unauthoriz...

CVE-2024-58044

HIGH CVSS 8.4 Mar 4, 2025

This CVE describes a permission verification bypass vulnerability in Huawei's notification module that allows attackers to bypass intended access controls. Successful exploitation could disrupt system...

CVE-2024-57960

HIGH CVSS 7.7 Feb 6, 2025

This CVE describes an input verification vulnerability in Huawei's ExternalStorageProvider module that could allow attackers to access sensitive information. The vulnerability affects Huawei devices w...

CVE-2024-56447

HIGH CVSS 7.8 Jan 8, 2025

This vulnerability involves improper permission control in the window management module, allowing unauthorized access to sensitive information. It affects Huawei devices and services where this module...

CVE-2024-54097

HIGH CVSS 7.3 Dec 12, 2024

This vulnerability in the HiView module allows attackers to compromise feature implementation and integrity. It affects Huawei devices running vulnerable versions of the HiView module. The impact coul...

CVE-2024-42035

HIGH CVSS 8.4 Aug 8, 2024

A permission control vulnerability in Huawei's App Multiplier module allows unauthorized access to sensitive functionality. This affects Huawei devices running vulnerable versions of the App Multiplie...

CVE-2024-42031

HIGH CVSS 7.5 Aug 8, 2024

This CVE describes an access permission verification vulnerability in Huawei device Settings modules that could allow unauthorized access to sensitive system settings or configuration data. It affects...

CVE-2024-36502

HIGH CVSS 7.9 Jun 14, 2024

An out-of-bounds read vulnerability in Huawei audio modules could allow attackers to cause denial of service conditions. This affects Huawei consumer devices with vulnerable audio components. The vuln...

CVE-2024-36500

HIGH CVSS 7.8 Jun 14, 2024

This CVE describes a privilege escalation vulnerability in Huawei's AMS module that allows attackers to gain elevated privileges on affected systems. Successful exploitation could compromise service c...

CVE-2024-32997

HIGH CVSS 8.4 May 14, 2024

A race condition vulnerability in the binder driver module of Huawei/HarmonyOS devices allows attackers to cause denial-of-service conditions. This affects availability by potentially crashing or free...

CVE-2024-32991

HIGH CVSS 7.5 May 14, 2024

A permission verification vulnerability in the wpa_supplicant module allows attackers to bypass security controls and disrupt Wi-Fi connectivity. This affects Huawei devices running HarmonyOS with vul...

CVE-2023-52719

HIGH CVSS 7.1 May 14, 2024

This CVE describes a privilege escalation vulnerability in Huawei's PMS (Package Management Service) module that allows attackers to gain elevated privileges. Successful exploitation could compromise ...

CVE-2023-52386

HIGH CVSS 7.5 Apr 8, 2024

CVE-2023-52386 is an out-of-bounds write vulnerability in the RSMC module affecting Huawei devices running HarmonyOS. Successful exploitation could cause system crashes or denial of service, impacting...

CVE-2024-27897

HIGH CVSS 7.5 Apr 8, 2024

This CVE describes an input verification vulnerability in the call module that could allow unauthorized access to sensitive information. The vulnerability affects Huawei devices running HarmonyOS, pot...

CVE-2023-52552

HIGH CVSS 7.5 Apr 8, 2024

This CVE describes an input verification vulnerability in the power module of Huawei devices running HarmonyOS. Successful exploitation could allow attackers to cause denial-of-service conditions, aff...

CVE-2023-52359

HIGH CVSS 7.5 Apr 8, 2024

This vulnerability allows attackers to bypass permission verification in ActivityTaskManagerService APIs, potentially disrupting system services. It affects Huawei devices running HarmonyOS with insuf...

CVE-2023-52537

HIGH CVSS 7.5 Apr 8, 2024

This vulnerability allows attackers to bypass package name verification in the HwIms module on Huawei devices running HarmonyOS. Successful exploitation can affect system availability, potentially cau...

CVE-2023-52540

HIGH CVSS 7.5 Apr 8, 2024

This CVE describes an improper authentication vulnerability in the Iaware module on Huawei devices running HarmonyOS. Attackers could exploit this to bypass authentication mechanisms, potentially disr...

CVE-2023-52545

HIGH CVSS 7.5 Apr 8, 2024

This vulnerability in Huawei's Calendar app involves undefined permissions that could allow attackers to disrupt the app's functionality, affecting availability. It impacts Huawei devices running Harm...

CVE-2023-52549

HIGH CVSS 7.5 Apr 8, 2024

This CVE describes a data verification error vulnerability in a kernel module that could allow attackers to bypass security checks. Successful exploitation may lead to unauthorized access to sensitive...

CVE-2023-52713

HIGH CVSS 7.7 Apr 7, 2024

This CVE describes an improper permission control vulnerability in the window management module of Huawei/HarmonyOS devices. It allows attackers to bypass intended access restrictions, potentially com...

CVE-2024-30416

HIGH CVSS 7.5 Apr 7, 2024

This CVE-2024-30416 is a Use After Free vulnerability in a driver module that could allow attackers to crash affected systems, causing denial of service. It affects Huawei devices running HarmonyOS. S...

CVE-2024-30418

HIGH CVSS 7.5 Apr 7, 2024

This CVE describes an insufficient permission verification vulnerability in the app management module of Huawei/HarmonyOS devices. Successful exploitation could allow attackers to affect system availa...

CVE-2024-30413

HIGH CVSS 7.5 Apr 7, 2024

This CVE describes an improper permission control vulnerability in the window management module of Huawei/HarmonyOS devices. Successful exploitation could allow attackers to affect system availability...

CVE-2022-48621

HIGH CVSS 7.5 Feb 18, 2024

This CVE describes a missing authentication vulnerability in Huawei/HarmonyOS Wi-Fi modules that allows attackers to access critical functions without proper credentials. Successful exploitation could...

CVE-2023-52376

HIGH CVSS 7.5 Feb 18, 2024

This CVE describes an information management vulnerability in Huawei's Gallery module that could allow unauthorized access to sensitive information. Successful exploitation affects service confidentia...

CVE-2023-52374

HIGH CVSS 7.5 Feb 18, 2024

This CVE describes a permission control vulnerability in the package management module of Huawei/HarmonyOS systems. Successful exploitation could allow unauthorized access to sensitive information, af...

CVE-2023-52367

HIGH CVSS 7.7 Feb 18, 2024

This CVE describes an improper access control vulnerability in Huawei's media library module that allows unauthorized access to restricted functionality. Successful exploitation could lead to service ...

CVE-2023-52372

HIGH CVSS 7.5 Feb 18, 2024

This CVE describes an input validation vulnerability in the motor module of Huawei/HarmonyOS devices. Attackers can exploit this flaw to cause denial-of-service conditions, potentially disrupting devi...

CVE-2023-52097

HIGH CVSS 7.5 Feb 18, 2024

This vulnerability allows attackers to bypass foreground service restrictions in Huawei's NMS module, potentially exposing sensitive service information. It affects Huawei devices running HarmonyOS wi...

CVE-2023-52360

HIGH CVSS 7.5 Feb 18, 2024

This CVE describes logic vulnerabilities in the baseband processor of affected Huawei/HarmonyOS devices. Successful exploitation could allow attackers to compromise service integrity, potentially disr...

CVE-2023-52362

HIGH CVSS 7.5 Feb 18, 2024

A permission management vulnerability in the lock screen module of Huawei/HarmonyOS devices allows attackers to bypass lock screen protections. Successful exploitation could lead to unauthorized acces...

CVE-2023-52387

HIGH CVSS 7.5 Feb 18, 2024

This CVE describes a resource reuse vulnerability in Huawei GPU modules that could allow unauthorized access to sensitive data. The vulnerability affects confidentiality of services running on affecte...

CVE-2026-24920

MEDIUM CVSS 6.2 Feb 6, 2026

A permission control vulnerability in the AMS module could allow attackers to disrupt system availability. This affects Huawei devices running vulnerable versions of the AMS module. Users of affected ...

CVE-2026-24927

MEDIUM CVSS 5.5 Feb 6, 2026

This CVE describes an out-of-bounds access vulnerability in a frequency modulation module that could allow attackers to cause denial of service conditions. The vulnerability affects availability of sy...

CVE-2026-24928

MEDIUM CVSS 5.8 Feb 6, 2026

This CVE describes an out-of-bounds write vulnerability in a file system module that could allow attackers to write data beyond allocated memory boundaries. Successful exploitation could affect servic...

CVE-2025-68970

MEDIUM CVSS 6.1 Jan 14, 2026

This CVE describes a permission verification bypass vulnerability in the media library module that allows unauthorized access to protected media content. It affects Huawei consumer devices with vulner...

CVE-2025-68959

MEDIUM CVSS 6.2 Jan 14, 2026

This CVE describes a permission verification bypass vulnerability in the media library module that allows unauthorized access to protected media content. Attackers can exploit this flaw to view sensit...

CVE-2025-68963

MEDIUM CVSS 5.7 Jan 14, 2026

This CVE describes a man-in-the-middle (MITM) vulnerability in the Clone module that could allow attackers to intercept and potentially modify communications. The vulnerability affects service confide...

CVE-2025-66325

MEDIUM CVSS 6.2 Dec 8, 2025

A permission control vulnerability in Huawei's package management module could allow unauthorized access to sensitive information. This affects Huawei devices and systems using vulnerable package mana...

CVE-2025-66329

MEDIUM CVSS 4.0 Dec 8, 2025

A permission control vulnerability in Huawei's window management module could allow attackers to affect system availability. This vulnerability impacts Huawei consumer devices running affected softwar...

CVE-2025-58311

MEDIUM CVSS 5.8 Nov 28, 2025

This CVE describes a use-after-free vulnerability in the USB driver module that could allow an attacker to execute arbitrary code or cause a system crash. The vulnerability affects systems with specif...

CVE-2025-58314

MEDIUM CVSS 6.6 Nov 28, 2025

This CVE describes an out-of-bounds read vulnerability in a Huawei driver module that could allow attackers to access invalid memory. Successful exploitation could lead to system crashes or informatio...

CVE-2025-54646

MEDIUM CVSS 5.1 Aug 6, 2025

This CVE describes an inadequate packet length check vulnerability in BLE (Bluetooth Low Energy) modules. Attackers could send specially crafted packets to cause performance degradation or denial of s...

CVE-2025-54642

MEDIUM CVSS 6.7 Aug 6, 2025

A buffer overflow vulnerability in the kernel gyroscope module allows attackers to crash or destabilize affected systems by sending malformed data. This affects availability of devices with vulnerable...

CVE-2025-54643

MEDIUM CVSS 6.6 Aug 6, 2025

This CVE describes an out-of-bounds array access vulnerability in the kernel ambient light module due to insufficient data verification. Successful exploitation could allow unauthorized access to sens...

CVE-2025-54644

MEDIUM CVSS 6.6 Aug 6, 2025

This CVE describes an out-of-bounds array access vulnerability in the kernel ambient light module due to insufficient data verification. Successful exploitation could allow unauthorized access to sens...

CVE-2025-54641

MEDIUM CVSS 6.7 Aug 6, 2025

A buffer overflow vulnerability in the kernel acceleration module allows attackers to cause denial of service by sending specially crafted data. This affects systems running Huawei products with the v...

CVE-2025-54636

MEDIUM CVSS 4.4 Aug 6, 2025

This CVE describes a buffer overflow vulnerability in the kernel drop detection module caused by insufficient input validation. Successful exploitation could lead to system crashes or denial of servic...

CVE-2025-54637

MEDIUM CVSS 4.4 Aug 6, 2025

This CVE describes an out-of-bounds array access vulnerability in the kernel ambient light module due to insufficient data verification. Successful exploitation could allow unauthorized access to sens...

CVE-2025-54629

MEDIUM CVSS 6.7 Aug 6, 2025

A race condition vulnerability in the memory management module's physical page import process could allow attackers to compromise service integrity. This affects systems using Huawei products with vul...

CVE-2025-54632

MEDIUM CVSS 6.8 Aug 6, 2025

This CVE describes a buffer overflow vulnerability in Huawei's HVB module due to insufficient data length verification. Attackers could exploit this to potentially execute arbitrary code or cause deni...

CVE-2025-53186

MEDIUM CVSS 5.9 Jul 7, 2025

This vulnerability allows third-party calling applications to send unverified broadcasts to the audio framework module on affected Huawei devices. This could potentially disrupt audio services or caus...

CVE-2025-53178

MEDIUM CVSS 4.8 Jul 7, 2025

A permission bypass vulnerability in the calendar storage module allows unauthorized access to calendar data. This affects Huawei head units where attackers could manipulate schedule reminder function...

CVE-2025-48902

MEDIUM CVSS 6.6 Jun 6, 2025

This vulnerability in Huawei device setting modules allows attackers to exhaust system resources through uncontrolled resource consumption, potentially causing denial-of-service conditions. It affects...

CVE-2024-57959

MEDIUM CVSS 6.1 Feb 6, 2025

A Use-After-Free vulnerability in the display module allows attackers to exploit memory corruption after memory has been freed. This could lead to abnormal feature behavior, crashes, or potentially co...

CVE-2024-57961

MEDIUM CVSS 6.8 Feb 6, 2025

This CVE describes an out-of-bounds write vulnerability in the emcom module of Huawei devices. Successful exploitation could allow attackers to corrupt memory and cause system instability or abnormal ...

CVE-2024-56448

MEDIUM CVSS 6.7 Jan 8, 2025

This vulnerability allows improper access control in the home screen widget module, potentially enabling attackers to disrupt device availability. It affects Huawei devices running vulnerable software...

CVE-2024-56450

MEDIUM CVSS 6.3 Jan 8, 2025

A buffer overflow vulnerability in a driver module allows attackers to crash affected systems, potentially causing denial of service. This affects Huawei devices running vulnerable driver versions. Th...

CVE-2024-56440

MEDIUM CVSS 6.2 Jan 8, 2025

A permission control vulnerability in Huawei's Connectivity module allows unauthorized access to restricted functionality. This affects Huawei devices with the vulnerable Connectivity module, potentia...

CVE-2024-56442

MEDIUM CVSS 5.5 Jan 8, 2025

This vulnerability involves improper implementation of native APIs in the NFC service module, allowing attackers to cause abnormal behavior in NFC features. It affects Huawei devices with vulnerable N...

CVE-2023-52954

MEDIUM CVSS 4.4 Jan 8, 2025

This vulnerability involves improper permission control in the Gallery module, allowing unauthorized access to gallery functions. Successful exploitation could affect system availability. This affects...

CVE-2024-56438

MEDIUM CVSS 6.0 Jan 8, 2025

This vulnerability in Huawei's HUKS (Hardware Unified Key Store) module allows improper memory address protection, potentially leading to denial of service conditions. It affects Huawei devices using ...