CVE-2025-21097
- EPSS 0.03%
- Veröffentlicht 04.03.2025 04:15:13
- Zuletzt bearbeitet 04.03.2025 17:22:39
in OpenHarmony v5.0.2 and prior versions allow a local attacker cause DOS through NULL pointer dereference.
CVE-2025-21098
- EPSS 0.03%
- Veröffentlicht 04.03.2025 04:15:13
- Zuletzt bearbeitet 04.03.2025 17:22:39
in OpenHarmony v5.0.2 and prior versions allow a local attacker cause information leak through out-of-bounds read bypass permission check.
CVE-2025-20011
- EPSS 0.03%
- Veröffentlicht 04.03.2025 04:15:12
- Zuletzt bearbeitet 04.03.2025 04:15:12
in OpenHarmony v5.0.2 and prior versions allow a local attacker case DOS through missing release of memory.
CVE-2025-20021
- EPSS 0.03%
- Veröffentlicht 04.03.2025 04:15:12
- Zuletzt bearbeitet 04.03.2025 19:08:18
in OpenHarmony v5.0.2 and prior versions allow a local attacker cause DOS through out-of-bounds read.
CVE-2025-20024
- EPSS 0.03%
- Veröffentlicht 04.03.2025 04:15:12
- Zuletzt bearbeitet 04.03.2025 19:08:18
in OpenHarmony v5.0.2 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through integer overflow. This vulnerability can be exploited only in restricted scenarios.
CVE-2025-20042
- EPSS 0.03%
- Veröffentlicht 04.03.2025 04:15:12
- Zuletzt bearbeitet 04.03.2025 19:08:18
in OpenHarmony v5.0.2 and prior versions allow a local attacker cause information leak through out-of-bounds read.
CVE-2025-0587
- EPSS 0.03%
- Veröffentlicht 04.03.2025 04:15:11
- Zuletzt bearbeitet 11.03.2025 18:07:22
in OpenHarmony v5.0.2 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through integer overflow. This vulnerability can be exploited only in restricted scenarios.
CVE-2025-0302
- EPSS 0.06%
- Veröffentlicht 07.02.2025 10:15:11
- Zuletzt bearbeitet 11.02.2025 17:25:36
in OpenHarmony v4.1.2 and prior versions allow a local attacker cause DOS through integer overflow.
CVE-2025-0303
- EPSS 0.07%
- Veröffentlicht 07.02.2025 10:15:11
- Zuletzt bearbeitet 11.02.2025 17:25:01
in OpenHarmony v4.1.2 and prior versions allow a local attacker cause the common permission is upgraded to root and sensitive information leak through buffer overflow.
CVE-2025-0304
- EPSS 0.08%
- Veröffentlicht 07.02.2025 10:15:11
- Zuletzt bearbeitet 11.02.2025 17:24:47
in OpenHarmony v4.1.2 and prior versions allow a local attacker cause the common permission is upgraded to root and sensitive information leak through use after free.