CVE-2025-68970: Input Validation
Published Jan 14, 2026
·Updated
Permission verification bypass vulnerability in the media library module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Affected Software
10 affected components
Huawei Emui=13.0.0
Huawei Emui=14.0.0
Huawei Emui=14.2.0
Huawei Emui=15.0.0
Huawei Harmonyos=3.0.0
Huawei Harmonyos=3.1.0
Huawei Harmonyos=4.0.0
Huawei Harmonyos=4.2.0
Huawei Harmonyos=4.3.0
Huawei Harmonyos=4.3.1
Event History
Jan 14, 2026
CVE Published
via MITRE·02:35 AM
Data Sourced
via MITRE·02:35 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·03:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-68970?
CVE-2025-68970 is classified with a medium severity level due to the potential impact on service confidentiality.
2
What does CVE-2025-68970 affect?
CVE-2025-68970 affects the media library module in specific versions of Huawei's EMUI and HarmonyOS.
3
How do I fix CVE-2025-68970?
To fix CVE-2025-68970, update to the latest version of the affected software that resolves the permission verification bypass.
4
Can CVE-2025-68970 lead to data breaches?
Yes, the exploitation of CVE-2025-68970 may allow attackers to access sensitive information, potentially leading to data breaches.
5
Is CVE-2025-68970 a remote exploitation risk?
CVE-2025-68970 may be exploited remotely depending on the configuration of the affected applications.