
CVE-2023-41310
https://notcve.org/view.php?id=CVE-2023-41310
26 Sep 2023 — Keep-alive vulnerability in the sticky broadcast mechanism. Successful exploitation of this vulnerability may cause malicious apps to run continuously in the background. Vulnerabilidad de Keep-alive en el mecanismo de transmisión fija. La explotación exitosa de esta vulnerabilidad puede provocar que aplicaciones maliciosas se ejecuten continuamente en segundo plano. • https://consumer.huawei.com/en/support/bulletin/2023/9 • CWE-400: Uncontrolled Resource Consumption •

CVE-2023-41305
https://notcve.org/view.php?id=CVE-2023-41305
26 Sep 2023 — Vulnerability of 5G messages being sent without being encrypted in a VPN environment in the SMS message module. Successful exploitation of this vulnerability may affect confidentiality. Vulnerabilidad del envío de mensajes 5G sin estar cifrados en un entorno VPN en el módulo de mensajes SMS. La explotación exitosa de esta vulnerabilidad puede afectar la confidencialidad. • https://consumer.huawei.com/en/support/bulletin/2023/9 • CWE-326: Inadequate Encryption Strength •

CVE-2023-41300
https://notcve.org/view.php?id=CVE-2023-41300
25 Sep 2023 — Vulnerability of parameters not being strictly verified in the PMS module. Successful exploitation of this vulnerability may cause the system to restart. Vulnerabilidad de parámetros que no se verifican estrictamente en el módulo PMS. La explotación exitosa de esta vulnerabilidad puede hacer que el sistema se reinicie.v • https://consumer.huawei.com/en/support/bulletin/2023/9 • CWE-20: Improper Input Validation •

CVE-2023-41296
https://notcve.org/view.php?id=CVE-2023-41296
25 Sep 2023 — Vulnerability of missing authorization in the kernel module. Successful exploitation of this vulnerability may affect integrity and confidentiality. Vulnerabilidad de autorización faltante en el módulo del kernel. La explotación exitosa de esta vulnerabilidad puede afectar la integridad y la confidencialidad. • https://consumer.huawei.com/en/support/bulletin/2023/9 • CWE-862: Missing Authorization •

CVE-2023-39409
https://notcve.org/view.php?id=CVE-2023-39409
25 Sep 2023 — DoS vulnerability in the PMS module. Successful exploitation of this vulnerability may cause the system to restart. Vulnerabilidad DoS en el módulo PMS. La explotación exitosa de esta vulnerabilidad puede hacer que el sistema se reinicie. • https://consumer.huawei.com/en/support/bulletin/2023/9 • CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') •

CVE-2023-39408
https://notcve.org/view.php?id=CVE-2023-39408
25 Sep 2023 — DoS vulnerability in the PMS module. Successful exploitation of this vulnerability may cause the system to restart. Vulnerabilidad DoS en el módulo PMS. La explotación exitosa de esta vulnerabilidad puede hacer que el sistema se reinicie. • https://consumer.huawei.com/en/support/bulletin/2023/9 • CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') •

CVE-2023-39403
https://notcve.org/view.php?id=CVE-2023-39403
13 Aug 2023 — Parameter verification vulnerability in the installd module. Successful exploitation of this vulnerability may cause sandbox files to be read and written without authorization. • https://consumer.huawei.com/en/support/bulletin/2023/8 • CWE-285: Improper Authorization CWE-358: Improperly Implemented Security Check for Standard •

CVE-2023-39402
https://notcve.org/view.php?id=CVE-2023-39402
13 Aug 2023 — Parameter verification vulnerability in the installd module. Successful exploitation of this vulnerability may cause sandbox files to be read and written without authorization. • https://consumer.huawei.com/en/support/bulletin/2023/8 • CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') CWE-285: Improper Authorization •

CVE-2023-39401
https://notcve.org/view.php?id=CVE-2023-39401
13 Aug 2023 — Parameter verification vulnerability in the installd module. Successful exploitation of this vulnerability may cause sandbox files to be read and written without authorization. • https://consumer.huawei.com/en/support/bulletin/2023/8 • CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') CWE-285: Improper Authorization •

CVE-2023-39400
https://notcve.org/view.php?id=CVE-2023-39400
13 Aug 2023 — Parameter verification vulnerability in the installd module. Successful exploitation of this vulnerability may cause sandbox files to be read and written without authorization. • https://consumer.huawei.com/en/support/bulletin/2023/8 • CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') CWE-285: Improper Authorization •