Huawei HarmonyOS UAF Vulnerability in Kernel Module

Vulnerability

A use-after-free vulnerability has been identified in the kernel module of Huawei's HarmonyOS. This vulnerability affects versions HarmonyOS4.3.0, HarmonyOS4.2.0, EMUI 15.0.0, and EMUI 14.2.0. Successful exploitation of this vulnerability can lead to unauthorized access to sensitive information and disrupt normal device operations.

Impact

Exploitation of this vulnerability can cause a use-after-free condition, potentially leading to memory corruption. This could be exploited to execute arbitrary code or cause a denial-of-service condition, where the device becomes unresponsive or unavailable.

Remediation

Users can apply the latest security update available through the Huawei Update Center to address this vulnerability.

Added: Apr 13, 2026, 5:24 AM
Updated: Apr 13, 2026, 5:24 AM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
5.0
exploitability
3.3
remediation
7.7
relevance
5.8
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.