Security Advisory

CVE-2025-23409

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-03-04 03:44:47
Last updated 2025-03-11 16:09:44
Assigner OpenHarmony
State PUBLISHED

Description

in OpenHarmony v5.0.2 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through use after free. This vulnerability can be exploited only in restricted scenarios.