Security Advisory

CVE-2025-20091

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2025-03-04 03:44:29
Last updated 2025-03-04 14:28:22
Assigner OpenHarmony
CVSS score 3.8
State PUBLISHED

Description

in OpenHarmony v5.0.2 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through use after free. This vulnerability can be exploited only in restricted scenarios.