Use-After-Free Vulnerability in Huawei Communication Module
CVE-2026-34858

4.1MEDIUM

Key Information:

Vendor

Huawei

Status
Vendor
CVE Published:
13 April 2026

What is CVE-2026-34858?

A use-after-free vulnerability exists in the communication module offered by Huawei. Exploiting this weakness can lead to potential availability issues, which may disrupt services reliant on this module. Users are advised to review their systems and apply the necessary updates to mitigate the risks associated with this vulnerability.

Affected Version(s)

HarmonyOS 6.0.0

HarmonyOS 5.1.0

References

CVSS V3.1

Score:
4.1
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.