Huawei HarmonyOS Insufficient Data Length Verification Vulnerability in HVB Module

Vulnerability

A vulnerability exists in the HVB module of Huawei's HarmonyOS, specifically in versions 5.1.0, 5.0.1, 4.3.1, and EMUI 15.0.0. This vulnerability arises from inadequate verification of data length, which could be exploited to disrupt service integrity.

Impact

Exploitation of this vulnerability may compromise service integrity.

Added: Aug 6, 2025, 5:27 AM
Updated: Aug 6, 2025, 5:27 AM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
0.6
exploitability
4.7
remediation
7.7
relevance
0.3
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.