Arbitrary Code Execution Vulnerability in OpenHarmony by OpenHarmony
CVE-2025-24309
7.8HIGH
What is CVE-2025-24309?
The vulnerability found in OpenHarmony versions up to 5.0.2 allows local attackers to execute arbitrary code within pre-installed applications due to an out-of-bounds write issue. This can lead to unauthorized access and manipulation, but exploitation is limited to specific scenarios, highlighting the importance of secure coding practices and thorough testing in software development.
Affected Version(s)
OpenHarmony v4.1.0