Out-of-Bounds Access Flaw in Huawei Kernel Ambient Light Module
CVE-2025-54643

6.6MEDIUM

Key Information:

Vendor

Huawei

Vendor
CVE Published:
6 August 2025

What is CVE-2025-54643?

A vulnerability exists in the Huawei Kernel Ambient Light Module that allows for out-of-bounds array access due to insufficient data verification. This issue could be exploited by attackers, potentially leading to unauthorized access to sensitive information, thereby impacting the confidentiality of services reliant on this module.

Affected Version(s)

EMUI 14.0.0

EMUI 13.0.0

HarmonyOS 4.0.0

References

CVSS V3.1

Score:
6.6
Severity:
MEDIUM
Confidentiality:
High
Integrity:
Low
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.