216.73.216.233

CVE-2025-20626

· Published 04/03/2025 04:15 · Modified 04/03/2025 20:41

Labels: CVE-2025-20626 2025-03-04CVE-2025-20626CWE-416[email protected]

Essential information

Published
04/03/2025 04:15
Modified
04/03/2025 20:41
Author
Creator
CVSS
3.8 LOW (v3.1)
CISA KEV
No
CWE
CVSS vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:L/I:N/A:N

CVSS metrics

Description

in OpenHarmony v5.0.2 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through use after free. This vulnerability can be exploited only in restricted scenarios.

NVD status

Status
Analyzed — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
openatom / openharmony cpe:2.3:o:openatom:openharmony:*:*:*:*:-:*:*:*

References