Resource Access Vulnerability in Huawei Location Service
CVE-2025-54649

4.5MEDIUM

Key Information:

Vendor

Huawei

Status
Vendor
CVE Published:
6 August 2025

What is CVE-2025-54649?

A vulnerability exists within Huawei's location service due to the use of incompatible types to access resources. This issue may lead to the exposure of inaccurate location information attributes, which could affect the performance and reliability of location-based services. Exploiting this vulnerability may result in incorrect user data being provided, compromising the integrity of applications that rely on location accuracy.

Affected Version(s)

HarmonyOS 5.1.0

HarmonyOS 5.0.1

References

CVSS V3.1

Score:
4.5
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.