Huawei HarmonyOS Media Library Permission Verification Bypass Vulnerability

Vulnerability

A permission verification bypass vulnerability has been identified in the media library module of Huawei's HarmonyOS. This vulnerability affects several versions of HarmonyOS and EMUI. Successful exploitation may lead to unauthorized access to sensitive information, thereby compromising service confidentiality.

Impact

Exploitation of this vulnerability may result in unauthorized access to sensitive information, affecting service confidentiality.

Remediation

Users can apply the January 2026 security update, which includes a patch for this vulnerability. Instructions for downloading this update can be found on the Huawei support website.

Added: Jan 14, 2026, 3:35 AM
Updated: Jan 14, 2026, 3:35 AM

Vulnerability Rating

Custom Algorithm
spread
7.8
impact
2.5
exploitability
2.8
remediation
7.7
relevance
2.0
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.