Type Confusion Vulnerability in OpenHarmony by OpenHarmony
CVE-2025-20063

5.5MEDIUM

Key Information:

Vendor
CVE Published:
8 June 2025

What is CVE-2025-20063?

A type confusion vulnerability has been identified in OpenHarmony versions prior to v5.0.3, which could be exploited by a local attacker to cause application crashes. This flaw arises from improper handling of data types, allowing an attacker to manipulate the behavior of applications running on the OpenHarmony platform.

Affected Version(s)

OpenHarmony v5.0.1

References

CVSS V3.1

Score:
5.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.