Arbitrary Code Execution Vulnerability in OpenHarmony by OpenHarmony
CVE-2025-23240
7.8HIGH
What is CVE-2025-23240?
A vulnerability in OpenHarmony versions 5.0.2 and earlier enables local attackers to execute arbitrary code within pre-installed applications. This flaw arises from an out-of-bounds write, which can be exploited under specific conditions. Users should ensure their systems are updated to protect against potential attacks leveraging this vulnerability.
Affected Version(s)
OpenHarmony v4.1.0