CVE-2026-34862 is a race condition vulnerability located in the power consumption statistics module of an unspecified product. This flaw creates a timing-dependent condition that could be exploited to compromise system availability. The vulnerability has a CVSS score of 4.7 (Medium severity) and requires local access with high attack complexity, meaning an attacker must be already present on the system and must successfully execute precise timing conditions to trigger the issue. The impact is limited to availability disruption, with no potential for confidentiality or integrity compromise. There is currently no evidence of active exploitation in the wild. The vulnerability does not appear on the Known Exploited Vulnerabilities (KEV) catalog, carries an extremely low EPSS probability score of 0.000050000, and remains inactive on threat intelligence hot lists. Community attention appears minimal at this time.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
6.0.0CPE matchmatch criteria | cpe:2.3:o:huawei:harmonyos:6.0.0:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:L/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.4 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.