| CVE | Vendors | Products | Updated | CVSS v3.1 | 
        | The kernel module has an out-of-bounds read vulnerability.Successful exploitation of this vulnerability may cause memory overwriting. | 
    
    
    
        | The storage maintenance and debugging module has an array out-of-bounds read vulnerability.Successful exploitation of this vulnerability will cause incorrect statistics of this module. | 
    
    
    
        | The security module has configuration defects.Successful exploitation of this vulnerability may affect system availability. | 
    
    
    
        | The HW_KEYMASTER module has a vulnerability of not verifying the data read.Successful exploitation of this vulnerability may cause malicious construction of data, which results in out-of-bounds access. | 
    
    
    
        | The kernel server has a vulnerability of not verifying the length of the data transferred in the user space.Successful exploitation of this vulnerability may cause out-of-bounds read in the kernel, which affects the device confidentiality and availability. | 
    
    
    
        | The rphone module has a script that can be maliciously modified.Successful exploitation of this vulnerability may cause irreversible programs to be implanted on user devices. | 
    
    
    
        | The phones have the heap overflow, out-of-bounds read, and null pointer vulnerabilities in the fingerprint trusted application (TA).Successful exploitation of this vulnerability may affect the fingerprint service. | 
    
    
    
        | Vulnerability of improper authentication logic implementation in the file system module
Impact: Successful exploitation of this vulnerability may affect service confidentiality. | 
    
    
    
        | Out-of-bounds array read/write vulnerability in the kernel module
Impact: Successful exploitation of this vulnerability may affect availability. | 
    
    
    
        | Vulnerability of insufficient information protection in the media library module
Impact: Successful exploitation of this vulnerability may affect service confidentiality. | 
    
    
    
        | Permission control vulnerability in the media library module
Impact: Successful exploitation of this vulnerability may affect service confidentiality. | 
    
    
    
        | Bypass vulnerability in the network search instruction authentication module
Impact: Successful exploitation of this vulnerability can bypass authentication and enable access to some network search functions. | 
    
    
    
        | Null pointer dereference vulnerability in the USB HDI driver module
Impact: Successful exploitation of this vulnerability may affect availability. | 
    
    
    
        | Deserialization mismatch vulnerability in the DSoftBus module
Impact: Successful exploitation of this vulnerability may affect service integrity. | 
    
    
    
        | Memory write permission bypass vulnerability in the kernel futex module
Impact: Successful exploitation of this vulnerability may affect service confidentiality. | 
    
    
    
        | Buffer overflow vulnerability in the codec module
Impact: Successful exploitation of this vulnerability may affect availability. | 
    
    
    
        | Buffer overflow vulnerability in the codec module
Impact: Successful exploitation of this vulnerability may affect availability. | 
    
    
    
        | Buffer overflow vulnerability in the codec module
Impact: Successful exploitation of this vulnerability may affect availability. | 
    
    
    
        | Access control vulnerability in the security verification module
Impact: Successful exploitation of this vulnerability will affect integrity and confidentiality. | 
    
    
    
        | Access control vulnerability in the security verification module
Impact: Successful exploitation of this vulnerability will affect integrity and confidentiality. |