CVE-2025-27132
EUVD-2025-1349306.05.2025, 09:15
in OpenHarmony v5.0.3 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through out-of-bounds write. This vulnerability can be exploited only in restricted scenarios.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| openatom | openharmony | 𝑥 ≤ 5.0.3 |
𝑥
= Vulnerable software versions
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| openharmony | openharmony | 4.1.0 ≤ 𝑥 ≤ 5.0.3 | CNA |
Common Weakness Enumeration