Huawei HarmonyOS and EMUI UAF Vulnerability in Screen Recording Framework

Vulnerability

A use-after-free vulnerability has been identified in the screen recording framework module of Huawei's HarmonyOS and EMUI. This vulnerability allows for memory to be accessed after it has been freed, which can lead to undefined behavior in the application. Successful exploitation may disrupt the normal functioning of the device or application, affecting availability.

Impact

Exploitation of this vulnerability can lead to a use-after-free condition, allowing for memory to be accessed after it has been freed. This can cause undefined behavior in the application, potentially leading to memory corruption or arbitrary code execution.

Remediation

Users can apply the November 2025 security update, which includes a patch for this vulnerability.

Added: Nov 28, 2025, 3:23 AM
Updated: Nov 28, 2025, 3:23 AM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
0.6
exploitability
3.3
remediation
7.7
relevance
1.1
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.