CVE-2026-24917 PUBLISHED

Assigner: huawei
Reserved: 28.01.2026 Published: 06.02.2026 Updated: 06.02.2026

UAF vulnerability in the security module. Impact: Successful exploitation of this vulnerability may affect availability.

Metrics

CVSS Vector: CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:L/A:H
CVSS Score: 6.5

Product Status

Vendor Huawei
Product HarmonyOS
Versions Default: unaffected
  • Version 4.3.0 is affected
  • Version 4.2.0 is affected
  • Version 4.0.0 is affected
  • Version 3.1.0 is affected
Vendor Huawei
Product EMUI
Versions Default: unaffected
  • Version 15.0.0 is affected
  • Version 14.2.0 is affected
  • Version 14.0.0 is affected
  • Version 13.0.0 is affected

References

Problem Types

  • CWE-416 Use After Free CWE