Race Condition Vulnerability in OpenHarmony Affects Local Security
CVE-2025-25278
7HIGH
What is CVE-2025-25278?
In OpenHarmony versions v5.0.3 and earlier, a local attacker can exploit a race condition affecting the Trusted Computing Base (TCB), enabling arbitrary code execution. This vulnerability underscores the importance of addressing synchronization issues in software to prevent unauthorized actions by local users.
Affected Version(s)
OpenHarmony v5.0.3