Description
Design defect vulnerability in Expedition mode. Impact: Successful exploitation of this vulnerability may affect availability.
Published: 2026-07-15
Score: 4.8 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

The vulnerability is a design defect in Huawei HarmonyOS’s Expedition mode, classified as CWE‑701. When exploited it can cause a degradation of service availability, potentially leading to intermittent or sustained interruptions of functions that rely on Expedition mode. The design flaw impacts the handling of data during operation, but no further details about the exact mechanics are disclosed in the advisory.

Affected Systems

Huawei HarmonyOS devices that run with Expedition mode enabled are affected. The advisory does not list specific version numbers, so all HarmonyOS builds that include Expedition mode may be at risk unless the vendor issues a patch.

Risk and Exploitability

The CVSS base score of 4.8 indicates a low‑to‑moderate impact. The EPSS score of less than 1% shows that the likelihood of exploitation in the wild is very low. The vulnerability is not included in the CISA KEV catalog. No explicit attack vector is disclosed; it is inferred that exploitation requires the device to be running Expedition mode, making widespread remote exploitation unlikely.

Generated by OpenCVE AI on July 31, 2026 at 03:44 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Apply the patch or update published by Huawei for HarmonyOS that corrects the Expedition mode defect.
  • If Expedition mode is not essential for the device’s function, disable or restrict its use to reduce the attack surface.
  • Enable logging for service availability and monitor logs for signs of degradation; report any anomalies to Huawei promptly.

Generated by OpenCVE AI on July 31, 2026 at 03:44 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Fri, 31 Jul 2026 04:00:00 +0000

Type Values Removed Values Added
Title Availability Degradation from Expedition Mode Design Defect

Wed, 29 Jul 2026 03:15:00 +0000

Type Values Removed Values Added
Title Design Defect in Huawei HarmonyOS Expedition Mode Causes Availability Issues

Sat, 25 Jul 2026 07:45:00 +0000

Type Values Removed Values Added
Title Design Defect in Huawei HarmonyOS Expedition Mode Causes Availability Issues

Wed, 22 Jul 2026 07:30:00 +0000

Type Values Removed Values Added
Title Availability Degradation in Expedition Mode

Fri, 17 Jul 2026 05:45:00 +0000

Type Values Removed Values Added
Title Availability Degradation in Expedition Mode

Wed, 15 Jul 2026 20:45:00 +0000

Type Values Removed Values Added
First Time appeared Huawei
Huawei harmonyos
Vendors & Products Huawei
Huawei harmonyos

Wed, 15 Jul 2026 13:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Wed, 15 Jul 2026 13:00:00 +0000

Type Values Removed Values Added
Description Design defect vulnerability in Expedition mode. Impact: Successful exploitation of this vulnerability may affect availability.
Weaknesses CWE-701
References
Metrics cvssV3_1

{'score': 4.8, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:H/UI:R/S:U/C:N/I:L/A:H'}


Subscriptions

Huawei Harmonyos
cve-icon MITRE

Status: PUBLISHED

Assigner: huawei

Published:

Updated: 2026-07-15T13:06:57.722Z

Reserved: 2026-07-01T10:03:11.403Z

Link: CVE-2026-58557

cve-icon Vulnrichment

Updated: 2026-07-15T13:06:53.040Z

cve-icon NVD

No data.

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-07-31T03:45:04Z

Weaknesses