CVE-2025-22835
EUVD-2025-761404.03.2025, 04:15
in OpenHarmony v5.0.2 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through out-of-bounds write. This vulnerability can be exploited only in restricted scenarios.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| openatom | openharmony | 4.1.0 ≤ 𝑥 ≤ 5.0.2 |
𝑥
= Vulnerable software versions
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| openharmony | openharmony | 4.1.0 ≤ 𝑥 ≤ 5.0.2 | CNA |
Common Weakness Enumeration