PatchSiren cyber security CVE debrief
CVE-2026-41979 Huawei CVE debrief
A permission control vulnerability was discovered in the print module. Successful exploitation of this vulnerability may affect integrity and confidentiality. The CVSS score for this vulnerability is 5.5, with a severity rating of MEDIUM.
- Vendor
- Huawei
- Product
- HarmonyOS
- CVSS
- MEDIUM 5.5
- CISA KEV
- Not listed in stored evidence
- Original CVE published
- 2026-06-09
- Original CVE updated
- 2026-06-09
- Advisory published
- 2026-06-09
- Advisory updated
- 2026-06-09
Who should care
Users of the affected product, likely from Huawei, should review the vendor's support bulletins for patches or mitigations.
Technical summary
The vulnerability, tracked as CVE-2026-41979, has a CVSS vector of CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N. It was published on 2026-06-09T05:16:38.143Z and last modified on 2026-06-09T13:34:58.997Z.
Defensive priority
MEDIUM
Recommended defensive actions
- Review and apply patches or mitigations provided by the vendor.
- Restrict access to the print module to minimize potential impact.
- Monitor the vendor's support bulletins for updates on this vulnerability.
Evidence notes
The vendor is likely Huawei, based on evidence from the source item.
Sources and references
Verified primary and authoritative sources
-
CVE-2026-41979 CVE Program record
Publisher, destination, and source semantics verified
URL: https://www.cve.org/CVERecord?id=CVE-2026-41979
CVE Program - Official CVE Program record with source-provided CVE metadata.
-
CVE-2026-41979 NVD vulnerability detail
Publisher, destination, and source semantics verified
URL: https://nvd.nist.gov/vuln/detail/CVE-2026-41979
NIST National Vulnerability Database - Official NIST NVD detail page and source-specific vulnerability assessment.
Supplemental references
-
Source reference
Unverified legacy reference
URL: https://consumer.huawei.com/en/support/bulletin/2026/6/
-
Source reference
Unverified legacy reference
URL: https://consumer.huawei.com/en/support/bulletinlaptops/2026/6/
Methodology and review provenance
AI-assisted synthesis based on stored public vulnerability evidence. System validation, approval state, and publication status do not by themselves establish human review of this revision. PatchSiren helps prioritize defensive review and does not prove exposure or remediation on any system.