PT-2025-9613 · Unknown · Openharmony

Publicado

2025-03-04

·

Atualizado

2025-03-04

·

CVE-2025-23409

CVSS v3.1

7.8

Alta

VetorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions OpenHarmony versions prior to 5.0.2 (excluding 5.0.2 and later)
Description The issue allows a local attacker to execute arbitrary code in pre-installed apps through use after free. This can be exploited only in restricted scenarios.
Recommendations For versions prior to 5.0.2, update to version 5.0.2 or later to resolve the issue.

Correção

Use After Free

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2025-23409

Produtos afetados

Openharmony