CVE-2025-25277
EUVD-2025-20867516.03.2026, 14:17
in OpenHarmony v5.1.0 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through using incompatible type. This vulnerability can be exploited only in restricted scenarios.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| openatom | openharmony | 5.0.3 |
| openatom | openharmony | 5.1.0 |
𝑥
= Vulnerable software versions
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| openharmony | openharmony | 5.0.3 ≤ | CNA |