Local Code Execution Vulnerability in OpenHarmony by OpenAtom Foundation
CVE-2025-20091
7.8HIGH
What is CVE-2025-20091?
In OpenHarmony versions up to v5.0.2, a vulnerability exists that allows local attackers to execute arbitrary code within pre-installed applications. This issue arises from a use-after-free flaw, which can be exploited under specific restricted conditions, potentially compromising the security of the affected system.
Affected Version(s)
OpenHarmony v4.1.0