Race Condition Vulnerability in Huawei Device Security Management Module
CVE-2026-28551

4.7MEDIUM

Key Information:

Vendor

Huawei

Status
Vendor
CVE Published:
5 March 2026

What is CVE-2026-28551?

This vulnerability presents a race condition within the device security management module of Huawei products. If exploited, it could potentially disrupt the availability of the affected devices, allowing unauthorized access or manipulation during concurrent operations. Operators using affected versions must ensure they follow the latest security advice to mitigate risks associated with this vulnerability.

Affected Version(s)

HarmonyOS 6.0.0

HarmonyOS 5.1.0

References

CVSS V3.1

Score:
4.7
Severity:
MEDIUM
Confidentiality:
None
Integrity:
Low
Availability:
None
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.