PT-2026-25622 · Openharmony+1 · Openharmony
Published
2026-03-16
·
Updated
2026-03-16
·
CVE-2025-12736
CVSS v3.1
6.5
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
OpenHarmony versions prior to 5.0.4
Description
The software contains a flaw that allows a local attacker to potentially leak sensitive, case-sensitive information. This occurs through the use of an uninitialized resource within the
multimedia audio standard component.Recommendations
Update to OpenHarmony version 5.0.4 or later.
Fix
Use of Uninitialized Resource
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Openharmony