Out-of-Bounds Write Vulnerability in Huawei Rendering and Composition Module
CVE-2026-49314

7.3HIGH

Key Information:

Vendor

Huawei

Status
Vendor
CVE Published:
9 September 2026

What is CVE-2026-49314?

The vulnerability in the rendering and composition module of Huawei products allows for an out-of-bounds write, which can be exploited to affect system availability. By manipulating data inputs, an attacker may gain unauthorized access to memory, potentially leading to system crashes or denial of service. The risk presents a significant concern for users relying on the stability of Huawei devices, emphasizing the need for prompt attention to security updates.

Affected Version(s)

HarmonyOS 6.1.0

References

CVSS V3.1

Score:
7.3
Severity:
HIGH
Confidentiality:
High
Integrity:
Low
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.