Huawei HarmonyOS Race Condition Vulnerability in the Bastet Module

Vulnerability

A race condition vulnerability has been identified in the Bastet module of Huawei's HarmonyOS. This vulnerability affects several different versions and ranges, including HarmonyOS4.2.0, HarmonyOS4.0.0, HarmonyOS3.0.0, HarmonyOS3.1.0, HarmonyOS2.0.0, HarmonyOS2.1.0, EMUI 14.0.0, EMUI 13.0.0, and EMUI 12.0.0. Successful exploitation of this vulnerability may impact service confidentiality.

Impact

Exploitation of this vulnerability may lead to unauthorized access to sensitive information or disruption of confidential services.

Remediation

Users can refer to the January 2025 Huawei Security Bulletin for guidance on applying the latest security updates that address this vulnerability.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
7.8
impact
0.6
exploitability
2.4
remediation
7.7
relevance
0.0
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.